A systemd stack-based buffer overflow in WatchGuard Firebox and XTM appliances allows an authenticated remote attacker to potentially execute arbitrary code by initiating a firmware update with a malicious upgrade image. This vulnerability impacts Fireware OS before 12.7.2_U2, 12.x before 12.1.3_U8, and 12.2.x through 12.5.x before 12.5.9_U2.
2022-02-24T15:15:31.100
2024-11-21T06:51:56.487
Modified
CVSSv3.1: 8.8 (HIGH)
AV:N/AC:L/Au:S/C:P/I:P/A:P
8.0
6.4
Type | Vendor | Product | Version/Range | Vulnerable? |
---|---|---|---|---|
Operating System | watchguard | fireware | < 12.1.3 | Yes |
Operating System | watchguard | fireware | < 12.5.9 | Yes |
Operating System | watchguard | fireware | < 12.7.2 | Yes |
Operating System | watchguard | fireware | 12.1.3 | Yes |
Operating System | watchguard | fireware | 12.1.3 | Yes |
Operating System | watchguard | fireware | 12.1.3 | Yes |
Operating System | watchguard | fireware | 12.1.3 | Yes |
Operating System | watchguard | fireware | 12.1.3 | Yes |
Operating System | watchguard | fireware | 12.1.3 | Yes |
Operating System | watchguard | fireware | 12.1.3 | Yes |
Operating System | watchguard | fireware | 12.1.3 | Yes |
Operating System | watchguard | fireware | 12.5.9 | Yes |
Operating System | watchguard | fireware | 12.5.9 | Yes |
Operating System | watchguard | fireware | 12.7.2 | Yes |
Operating System | watchguard | fireware | 12.7.2 | Yes |