Arbitrary Kernel Memory Read Vulnerability in Fortinet FortiClient

Arbitrary Kernel Memory Read Vulnerability in Fortinet FortiClient

CVE-2015-4077 · LOW Severity

AV:L/AC:L/AU:N/C:P/I:N/A:N

The (1) mdare64_48.sys, (2) mdare32_48.sys, (3) mdare32_52.sys, and (4) mdare64_52.sys drivers in Fortinet FortiClient before 5.2.4 allow local users to read arbitrary kernel memory via a 0x22608C ioctl call.

Learn more about our Cis Benchmark Audit For Fortinet.