CVE-2020-12819
published 2024-12-19CVE-2020-12819: A heap-based buffer overflow vulnerability in the processing of Link Control Protocol messages in FortiGate versions 5.6.12, 6.0.10, 6.2.4 and 6.4.1 and…
PriorityP350high7.5CVSS 3.1
AVNACHPRLUINSUCHIHAH
EPSS
0.77%
51.3th percentile
A heap-based buffer overflow vulnerability in the processing of Link Control Protocol messages in FortiGate versions 5.6.12, 6.0.10, 6.2.4 and 6.4.1 and earlier may allow a remote attacker with valid SSL VPN credentials to crash the SSL VPN daemon by sending a large LCP packet, when tunnel mode is enabled. Arbitrary code execution may be theoretically possible, albeit practically very difficult to achieve in this context
Affected
10 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| fortinet | fortigate | — | — |
| fortinet | fortios | < 5.6.13 | 5.6.13 |
| fortinet | fortios | — | — |
| fortinet | fortios | 5.6.0 – 5.6.12 | — |
| fortinet | fortios | >= 6.0.0 < 6.0.11 | 6.0.11 |
| fortinet | fortios | 6.0.0 – 6.0.10 | — |
| fortinet | fortios | >= 6.2.0 < 6.2.5 | 6.2.5 |
| fortinet | fortios | 6.2.0 – 6.2.4 | — |
| fortinet | fortios | >= 6.4.0 < 6.4.2 | 6.4.2 |
| fortinet | fortios | 6.4.0 – 6.4.1 | — |
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
GHSA
GHSA-8vr7-33jp-gfgw: A heap-based buffer overflow vulnerability in the processing of Link Control Protocol messages in FortiGate versions 5
ghsa_unreviewed·2024-12-19
CVE-2020-12819 [MEDIUM] CWE-122 GHSA-8vr7-33jp-gfgw: A heap-based buffer overflow vulnerability in the processing of Link Control Protocol messages in FortiGate versions 5
A heap-based buffer overflow vulnerability in the processing of Link Control Protocol messages in FortiGate versions 5.6.12, 6.0.10, 6.2.4 and 6.4.1 and earlier may allow a remote attacker with valid SSL VPN credentials to crash the SSL VPN daemon by sending a large LCP packet, when tunnel mode is enabled. Arbitrary code execution may be theoretically possible, albeit practically very difficult to achieve in this context
Fortinet
A heap-based buffer overflow vulnerability in the processing of Link Control Protocol messages in FortiGate versions 5.6...
vendor_fortinet·2024-12-19·CVSS 5.4
CVE-2020-12819 [MEDIUM] CWE-122 A heap-based buffer overflow vulnerability in the processing of Link Control Protocol messages in FortiGate versions 5.6...
FG-IR-20-082: A heap-based buffer overflow vulnerability in the processing of Link Control Protocol messages in FortiGate versions 5.6...
A heap-based buffer overflow vulnerability in the processing of Link Control Protocol messages in FortiGate versions 5.6.12, 6.0.10, 6.2.4 and 6.4.1 and earlier may allow a remote attacker with valid SSL VPN credentials to crash the SSL VPN daemon by sending a large LCP packet, when tunnel mode is enabled. Arbitrary code execution may be theoretically possible, albeit practically very difficult to achieve in this context
CVEs: CVE-2020-12819
CWEs: CWE-122, CWE-787
CVSS: 5.4 (medium)
Affected products: FortiGate, FortiOS
No detection rules found.
No public exploits indexed.
No writeups or analysis indexed.
2024-12-19
Published