CVE-2019-17652

MEDIUM

FortiClient < 6.2.1 - Stack Buffer Overflow via StartAvCustomScan IPC Request

Title source: llm
STIX 2.1

Description

A stack buffer overflow vulnerability in FortiClient for Linux 6.2.1 and below may allow a user with low privilege to cause FortiClient processes running under root priviledge crashes via sending specially crafted "StartAvCustomScan" type IPC client requests to the fctsched process due the argv data not been well sanitized.

References (2)

Core 2
Core References
Vendor Advisory x_refsource_confirm
https://fortiguard.com/psirt/FG-IR-19-238
Exploit, Third Party Advisory x_refsource_misc
https://danishcyberdefence.dk/blog/forticlient_linux

Scores

CVSS v3 6.5
EPSS 0.0052
EPSS Percentile 67.1%
Attack Vector NETWORK
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H

CISA SSVC

Vulnrichment
Exploitation none
Automatable no
Technical Impact partial

Details

CWE
CWE-787
Status published
Products (1)
fortinet/forticlient < 6.2.1
Published Feb 06, 2020
Tracked Since Feb 18, 2026