Back to search
CVE-2008-0779
Published: Feb 14, 2008
Modified: Aug 7, 2024
PUBLISHED
Description
The fortimon.sys device driver in Fortinet FortiClient Host Security 3.0 MR5 Patch 3 and earlier does not properly initialize its DeviceExtension, which allows local users to access kernel memory and execute arbitrary code via a crafted request.
| Vendor | Product | Versions |
|---|---|---|
n/a | n/a | affected n/a |
References
forticlient-fortimon-privilege-escalation(40512)
vdb-entry
x_refsource_XF
ADV-2008-0541
vdb-entry
x_refsource_VUPEN
1019415
vdb-entry
x_refsource_SECTRACK
27776
vdb-entry
x_refsource_BID
http://kc.forticare.com/default.asp?id=3618
x_refsource_CONFIRM
20080213 [Reversemode Advisory] February Advisories : Microsoft Word 2003 + Fortinet Forticlient
mailing-list
x_refsource_BUGTRAQ
3660
third-party-advisory
x_refsource_SREASON
28975
third-party-advisory
x_refsource_SECUNIA
Security Training
Train your team to recognize and prevent security threats with our comprehensive security awareness program.
Start TrainingVulnerability Scanning
Discover vulnerabilities in your applications and infrastructure before attackers do.
Scan Now