CVE-2021-42755

CVSS V2 None CVSS V3 Medium 4.3
Description
An integer overflow / wraparound vulnerability [CWE-190] in FortiSwitch 7.0.2 and below, 6.4.9 and below, 6.2.x, 6.0.x; FortiRecorder 6.4.2 and below, 6.0.10 and below; FortiOS 7.0.2 and below, 6.4.8 and below, 6.2.10 and below, 6.0.x; FortiProxy 7.0.0, 2.0.6 and below, 1.2.x, 1.1.x, 1.0.x; FortiVoiceEnterprise 6.4.3 and below, 6.0.10 and below dhcpd daemon may allow an unauthenticated and network adjacent attacker to crash the dhcpd deamon, resulting in potential denial of service.
Overview
  • CVE ID
  • CVE-2021-42755
  • Assigner
  • psirt@fortinet.com
  • Vulnerability Status
  • Analyzed
  • Published Version
  • 2022-07-18T17:15:08
  • Last Modified Date
  • 2022-07-25T18:33:51
CPE Configuration (Product)
CPE Vulnerable Operator Version Start Version End
cpe:2.3:a:fortinet:fortiproxy:*:*:*:*:*:*:*:* 1 OR 1.0.0 1.0.7
cpe:2.3:a:fortinet:fortiproxy:*:*:*:*:*:*:*:* 1 OR 1.1.0 1.1.6
cpe:2.3:a:fortinet:fortiproxy:*:*:*:*:*:*:*:* 1 OR 1.2.0 1.2.13
cpe:2.3:a:fortinet:fortiproxy:*:*:*:*:*:*:*:* 1 OR 2.0.0 2.0.6
cpe:2.3:a:fortinet:fortiproxy:7.0.0:*:*:*:*:*:*:* 1 OR
cpe:2.3:a:fortinet:fortivoice:5.3.0:*:*:*:entreprise:*:*:* 1 OR
cpe:2.3:a:fortinet:fortivoice:5.3.1:*:*:*:entreprise:*:*:* 1 OR
cpe:2.3:a:fortinet:fortivoice:5.3.2:*:*:*:entreprise:*:*:* 1 OR
cpe:2.3:a:fortinet:fortivoice:5.3.3:*:*:*:entreprise:*:*:* 1 OR
cpe:2.3:a:fortinet:fortivoice:5.3.4:*:*:*:entreprise:*:*:* 1 OR
cpe:2.3:a:fortinet:fortivoice:5.3.5:*:*:*:entreprise:*:*:* 1 OR
cpe:2.3:a:fortinet:fortivoice:5.3.6:*:*:*:entreprise:*:*:* 1 OR
cpe:2.3:a:fortinet:fortivoice:5.3.7:*:*:*:entreprise:*:*:* 1 OR
cpe:2.3:a:fortinet:fortivoice:5.3.8:*:*:*:entreprise:*:*:* 1 OR
cpe:2.3:a:fortinet:fortivoice:5.3.10:*:*:*:entreprise:*:*:* 1 OR
cpe:2.3:a:fortinet:fortivoice:5.3.11:*:*:*:entreprise:*:*:* 1 OR
cpe:2.3:a:fortinet:fortivoice:5.3.12:*:*:*:entreprise:*:*:* 1 OR
cpe:2.3:a:fortinet:fortivoice:5.3.13:*:*:*:entreprise:*:*:* 1 OR
cpe:2.3:a:fortinet:fortivoice:5.3.14:*:*:*:entreprise:*:*:* 1 OR
cpe:2.3:a:fortinet:fortivoice:5.3.15:*:*:*:entreprise:*:*:* 1 OR
cpe:2.3:a:fortinet:fortivoice:5.3.16:*:*:*:entreprise:*:*:* 1 OR
cpe:2.3:a:fortinet:fortivoice:5.3.17:*:*:*:entreprise:*:*:* 1 OR
cpe:2.3:a:fortinet:fortivoice:5.3.18:*:*:*:entreprise:*:*:* 1 OR
cpe:2.3:a:fortinet:fortivoice:5.3.19:*:*:*:entreprise:*:*:* 1 OR
cpe:2.3:a:fortinet:fortivoice:5.3.20:*:*:*:entreprise:*:*:* 1 OR
cpe:2.3:a:fortinet:fortivoice:5.3.21:*:*:*:entreprise:*:*:* 1 OR
cpe:2.3:a:fortinet:fortivoice:5.3.22:*:*:*:entreprise:*:*:* 1 OR
cpe:2.3:a:fortinet:fortivoice:5.3.23:*:*:*:entreprise:*:*:* 1 OR
cpe:2.3:a:fortinet:fortivoice:5.3.24:*:*:*:entreprise:*:*:* 1 OR
cpe:2.3:a:fortinet:fortivoice:5.3.25:*:*:*:entreprise:*:*:* 1 OR
cpe:2.3:a:fortinet:fortivoice:5.3.26:*:*:*:entreprise:*:*:* 1 OR
cpe:2.3:a:fortinet:fortivoice:6.0.0:*:*:*:entreprise:*:*:* 1 OR
cpe:2.3:a:fortinet:fortivoice:6.0.1:*:*:*:entreprise:*:*:* 1 OR
cpe:2.3:a:fortinet:fortivoice:6.0.2:*:*:*:entreprise:*:*:* 1 OR
cpe:2.3:a:fortinet:fortivoice:6.0.3:*:*:*:entreprise:*:*:* 1 OR
cpe:2.3:a:fortinet:fortivoice:6.0.4:*:*:*:entreprise:*:*:* 1 OR
cpe:2.3:a:fortinet:fortivoice:6.0.5:*:*:*:entreprise:*:*:* 1 OR
cpe:2.3:a:fortinet:fortivoice:6.0.6:*:*:*:entreprise:*:*:* 1 OR
cpe:2.3:a:fortinet:fortivoice:6.0.7:*:*:*:entreprise:*:*:* 1 OR
cpe:2.3:a:fortinet:fortivoice:6.0.8:*:*:*:entreprise:*:*:* 1 OR
cpe:2.3:a:fortinet:fortivoice:6.0.9:*:*:*:entreprise:*:*:* 1 OR
cpe:2.3:a:fortinet:fortivoice:6.0.10:*:*:*:entreprise:*:*:* 1 OR
cpe:2.3:a:fortinet:fortivoice:6.4.0:*:*:*:entreprise:*:*:* 1 OR
cpe:2.3:a:fortinet:fortivoice:6.4.1:*:*:*:entreprise:*:*:* 1 OR
cpe:2.3:a:fortinet:fortivoice:6.4.2:*:*:*:entreprise:*:*:* 1 OR
cpe:2.3:a:fortinet:fortivoice:6.4.3:*:*:*:entreprise:*:*:* 1 OR
cpe:2.3:o:fortinet:fortios:5.4.0:*:*:*:*:*:*:* 1 OR
cpe:2.3:o:fortinet:fortios:5.4.1:*:*:*:*:*:*:* 1 OR
cpe:2.3:o:fortinet:fortios:5.4.2:*:*:*:*:*:*:* 1 OR
cpe:2.3:o:fortinet:fortios:5.4.3:*:*:*:*:*:*:* 1 OR
cpe:2.3:o:fortinet:fortios:5.4.4:*:*:*:*:*:*:* 1 OR
cpe:2.3:o:fortinet:fortios:5.4.5:*:*:*:*:*:*:* 1 OR
cpe:2.3:o:fortinet:fortios:5.4.6:*:*:*:*:*:*:* 1 OR
cpe:2.3:o:fortinet:fortios:5.4.7:*:*:*:*:*:*:* 1 OR
cpe:2.3:o:fortinet:fortios:5.4.8:*:*:*:*:*:*:* 1 OR
cpe:2.3:o:fortinet:fortios:5.4.9:*:*:*:*:*:*:* 1 OR
cpe:2.3:o:fortinet:fortios:5.4.10:*:*:*:*:*:*:* 1 OR
cpe:2.3:o:fortinet:fortios:5.4.11:*:*:*:*:*:*:* 1 OR
cpe:2.3:o:fortinet:fortios:5.4.12:*:*:*:*:*:*:* 1 OR
cpe:2.3:o:fortinet:fortios:5.4.13:*:*:*:*:*:*:* 1 OR
cpe:2.3:o:fortinet:fortios:5.6.0:*:*:*:*:*:*:* 1 OR
cpe:2.3:o:fortinet:fortios:5.6.1:*:*:*:*:*:*:* 1 OR
cpe:2.3:o:fortinet:fortios:5.6.2:*:*:*:*:*:*:* 1 OR
cpe:2.3:o:fortinet:fortios:5.6.3:*:*:*:*:*:*:* 1 OR
cpe:2.3:o:fortinet:fortios:5.6.4:*:*:*:*:*:*:* 1 OR
cpe:2.3:o:fortinet:fortios:5.6.5:*:*:*:*:*:*:* 1 OR
cpe:2.3:o:fortinet:fortios:5.6.6:*:*:*:*:*:*:* 1 OR
cpe:2.3:o:fortinet:fortios:5.6.7:*:*:*:*:*:*:* 1 OR
cpe:2.3:o:fortinet:fortios:5.6.8:*:*:*:*:*:*:* 1 OR
cpe:2.3:o:fortinet:fortios:5.6.9:*:*:*:*:*:*:* 1 OR
cpe:2.3:o:fortinet:fortios:5.6.10:*:*:*:*:*:*:* 1 OR
cpe:2.3:o:fortinet:fortios:5.6.11:*:*:*:*:*:*:* 1 OR
cpe:2.3:o:fortinet:fortios:5.6.12:*:*:*:*:*:*:* 1 OR
cpe:2.3:o:fortinet:fortios:5.6.13:*:*:*:*:*:*:* 1 OR
cpe:2.3:o:fortinet:fortios:5.6.14:*:*:*:*:*:*:* 1 OR
cpe:2.3:o:fortinet:fortios:6.0.0:*:*:*:*:*:*:* 1 OR
cpe:2.3:o:fortinet:fortios:6.0.1:*:*:*:*:*:*:* 1 OR
cpe:2.3:o:fortinet:fortios:6.0.2:*:*:*:*:*:*:* 1 OR
cpe:2.3:o:fortinet:fortios:6.0.3:*:*:*:*:*:*:* 1 OR
cpe:2.3:o:fortinet:fortios:6.0.4:*:*:*:*:*:*:* 1 OR
cpe:2.3:o:fortinet:fortios:6.0.5:*:*:*:*:*:*:* 1 OR
cpe:2.3:o:fortinet:fortios:6.0.6:*:*:*:*:*:*:* 1 OR
cpe:2.3:o:fortinet:fortios:6.0.7:*:*:*:*:*:*:* 1 OR
cpe:2.3:o:fortinet:fortios:6.0.8:*:*:*:*:*:*:* 1 OR
cpe:2.3:o:fortinet:fortios:6.0.9:*:*:*:*:*:*:* 1 OR
cpe:2.3:o:fortinet:fortios:6.0.10:*:*:*:*:*:*:* 1 OR
cpe:2.3:o:fortinet:fortios:6.0.11:*:*:*:*:*:*:* 1 OR
cpe:2.3:o:fortinet:fortios:6.0.12:*:*:*:*:*:*:* 1 OR
cpe:2.3:o:fortinet:fortios:6.0.13:*:*:*:*:*:*:* 1 OR
cpe:2.3:o:fortinet:fortios:6.0.14:*:*:*:*:*:*:* 1 OR
cpe:2.3:o:fortinet:fortios:6.2.0:*:*:*:*:*:*:* 1 OR
cpe:2.3:o:fortinet:fortios:6.2.1:*:*:*:*:*:*:* 1 OR
cpe:2.3:o:fortinet:fortios:6.2.2:*:*:*:*:*:*:* 1 OR
cpe:2.3:o:fortinet:fortios:6.2.3:*:*:*:*:*:*:* 1 OR
cpe:2.3:o:fortinet:fortios:6.2.4:*:*:*:*:*:*:* 1 OR
cpe:2.3:o:fortinet:fortios:6.2.5:*:*:*:*:*:*:* 1 OR
cpe:2.3:o:fortinet:fortios:6.2.6:*:*:*:*:*:*:* 1 OR
cpe:2.3:o:fortinet:fortios:6.2.7:*:*:*:*:*:*:* 1 OR
cpe:2.3:o:fortinet:fortios:6.2.8:*:*:*:*:*:*:* 1 OR
cpe:2.3:o:fortinet:fortios:6.2.9:*:*:*:*:*:*:* 1 OR
cpe:2.3:o:fortinet:fortios:6.2.10:*:*:*:*:*:*:* 1 OR
cpe:2.3:o:fortinet:fortios:6.4.0:*:*:*:*:*:*:* 1 OR
cpe:2.3:o:fortinet:fortios:6.4.1:*:*:*:*:*:*:* 1 OR
cpe:2.3:o:fortinet:fortios:6.4.2:*:*:*:*:*:*:* 1 OR
cpe:2.3:o:fortinet:fortios:6.4.3:*:*:*:*:*:*:* 1 OR
cpe:2.3:o:fortinet:fortios:6.4.4:*:*:*:*:*:*:* 1 OR
cpe:2.3:o:fortinet:fortios:6.4.5:*:*:*:*:*:*:* 1 OR
cpe:2.3:o:fortinet:fortios:6.4.6:*:*:*:*:*:*:* 1 OR
cpe:2.3:o:fortinet:fortios:6.4.7:*:*:*:*:*:*:* 1 OR
cpe:2.3:o:fortinet:fortios:7.0.0:*:*:*:*:*:*:* 1 OR
cpe:2.3:o:fortinet:fortios:7.0.1:*:*:*:*:*:*:* 1 OR
cpe:2.3:o:fortinet:fortios:7.0.2:*:*:*:*:*:*:* 1 OR
cpe:2.3:o:fortinet:fortirecorder_firmware:6.0.0:*:*:*:*:*:*:* 1 OR
cpe:2.3:o:fortinet:fortirecorder_firmware:6.0.1:*:*:*:*:*:*:* 1 OR
cpe:2.3:o:fortinet:fortirecorder_firmware:6.0.2:*:*:*:*:*:*:* 1 OR
cpe:2.3:o:fortinet:fortirecorder_firmware:6.0.3:*:*:*:*:*:*:* 1 OR
cpe:2.3:o:fortinet:fortirecorder_firmware:6.0.4:*:*:*:*:*:*:* 1 OR
cpe:2.3:o:fortinet:fortirecorder_firmware:6.0.5:*:*:*:*:*:*:* 1 OR
cpe:2.3:o:fortinet:fortirecorder_firmware:6.0.6:*:*:*:*:*:*:* 1 OR
cpe:2.3:o:fortinet:fortirecorder_firmware:6.0.7:*:*:*:*:*:*:* 1 OR
cpe:2.3:o:fortinet:fortirecorder_firmware:6.0.8:*:*:*:*:*:*:* 1 OR
cpe:2.3:o:fortinet:fortirecorder_firmware:6.0.9:*:*:*:*:*:*:* 1 OR
cpe:2.3:o:fortinet:fortirecorder_firmware:6.0.10:*:*:*:*:*:*:* 1 OR
cpe:2.3:o:fortinet:fortirecorder_firmware:6.4.0:*:*:*:*:*:*:* 1 OR
cpe:2.3:o:fortinet:fortirecorder_firmware:6.4.1:*:*:*:*:*:*:* 1 OR
cpe:2.3:o:fortinet:fortirecorder_firmware:6.4.2:*:*:*:*:*:*:* 1 OR
cpe:2.3:o:fortinet:fortiswitch:*:*:*:*:*:*:*:* 1 OR 6.0.0 6.0.7
cpe:2.3:o:fortinet:fortiswitch:*:*:*:*:*:*:*:* 1 OR 6.2.0 6.2.7
cpe:2.3:o:fortinet:fortiswitch:*:*:*:*:*:*:*:* 1 OR 6.4.0 6.4.9
cpe:2.3:o:fortinet:fortiswitch:*:*:*:*:*:*:*:* 1 OR 7.0.0 7.0.2
CVSS Version 3
  • Version
  • 3.1
  • Vector String
  • CVSS:3.1/AV:A/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:L
  • Attack Vector
  • ADJACENT_NETWORK
  • Attack Compatibility
  • LOW
  • Privileges Required
  • NONE
  • User Interaction
  • NONE
  • Scope
  • UNCHANGED
  • Confidentiality Impact
  • NONE
  • Availability Impact
  • LOW
  • Base Score
  • 4.3
  • Base Severity
  • MEDIUM
  • Exploitability Score
  • 2.8
  • Impact Score
  • 1.4
References
Reference URL Reference Tags
https://fortiguard.com/psirt/FG-IR-21-155
History
Created Old Value New Value Data Type Notes
2022-07-18 18:01:17 Added to TrackCVE