RULE(RULE ID:332000)

Rule General Information
Release Date: 2020-08-31
Rule Name: FortiOS SSL VPN Pre-Auth Messages Payload Buffer Overflow Vulnerability (CVE-2018-13381)
Severity:
CVE ID:
Rule Protection Details
Description: A buffer overflow vulnerability in Fortinet FortiOS 6.0.0 to 6.0.4, 5.6.0 to 5.6.7, 5.4 and below versions under SSL VPN web portal allows a non-authenticated attacker to perform a Denial-of-service attack via special craft message payloads.
Impact: A buffer overflow vulnerability can be triggered by an attacker in the context of the vulnerable product. Further attacks includes arbitrary code execution and denial of service.
Affected OS: Windows, Linux
Reference: SecurityFocusBID:108440
https://devco.re/blog/2019/08/09/attacking-ssl-vpn-part-2-breaking-the-Fortigate-ssl-vpn/
https://fortiguard.com/advisory/FG-IR-18-387
Solutions
The vendors have released upgrade patches to fix vulnerabilities, please visit:
https://fortiguard.com/psirt/FG-IR-18-387