Fortinet FortiOS and FortiSASE Integer Overflow Vulnerability in IPsec IKE Service Allowing Denial-of-Service

Vulnerability

A vulnerability allowing integer overflow or wraparound has been identified in Fortinet FortiOS versions 7.4.0 through 7.4.4, and 7.2.0 through 7.2.10, as well as FortiSASE version 23.4.b. This vulnerability exists in the FortiOS tenant IPsec IKEv1 service, where an authenticated attacker can send crafted requests to crash the IPsec tunnel, leading to a potential denial-of-service condition.

Impact

Exploitation of this vulnerability can cause a denial-of-service condition by crashing the IPsec tunnel, disrupting VPN connectivity.

Remediation

Users can upgrade Fortinet FortiOS to version 7.4.5 or 7.2.12, depending on their current version. Fortinet has also released a virtual patch for this vulnerability in the FortiSASE version 24.4.a. For Fortinet FortiOS 7.4, the recommended upgrade is to version 7.4.5 or above. For Fortinet FortiOS 7.2, users should upgrade to version 7.2.12 or above. A virtual patch named 'FG-VD-10006838.0day' is available in the Fortinet Mobile Workforce Protection database update 24.090.

Added: Sep 1, 2025, 7:22 PM
Updated: Sep 1, 2025, 7:22 PM

Vulnerability Rating

Custom Algorithm
spread
6.8
impact
2.5
exploitability
4.9
remediation
8.3
relevance
0.0
threat
0.0
urgency
2.9
incentive
1.7

Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.