An integer overflow in WatchGuard Firebox and XTM...
High severity
Unreviewed
Published
Mar 5, 2022
to the GitHub Advisory Database
•
Updated Feb 3, 2023
Description
Published by the National Vulnerability Database
Feb 24, 2022
Published to the GitHub Advisory Database
Mar 5, 2022
Last updated
Feb 3, 2023
An integer overflow in WatchGuard Firebox and XTM appliances allows an authenticated remote attacker to trigger a heap-based buffer overflow and potentially execute arbitrary code by initiating a firmware update with a malicious upgrade image. This vulnerability impacts Fireware OS before 12.7.2_U2, 12.x before 12.1.3_U8, and 12.2.x through 12.5.x before 12.5.9_U2.
References