CNNVD-202510-1957 Information

CNNVD ID

CNNVD-202510-1957

CVE-2025-58903

  • CNNVD Published: 2025-10-14

Description (Chinese)

Fortinet FortiOS是美国飞塔(Fortinet)公司的一套专用于FortiGate网络安全平台上的安全操作系统。该系统为用户提供防火墙、防病毒、IPSec/SSLVPN、Web内容过滤和反垃圾邮件等多种安全功能。 Fortinet FortiOS 7.6.0版本至7.6.3版本和7.4.8版本之前版本存在安全漏洞,该漏洞源于未检查返回值,可能导致空指针取消引用。

Description (English)

Fortinet FortiOS is a security operating system dedicated to the FortiGate network security platform of the United States of America. The system provides a wide range of security features for users, including firewalls, anti-virus, IPSEc/SSLVPN, Web content filters and anti-spam. There is a security loophole in the previous versions of Fortinet FortiOS 7.6.0 to 7.6.3 and 7.4.8, which stems from the failure to check return values and may lead to the removal of references from the empty pointer.

Hazard Level

High

Vulnerability Type

其他

Affected Vendor

飞塔

Published

2025-10-14

Last Modified

2026-02-24

References

https://fortiguard.fortinet.com/psirt/FG-IR-25-653 https://access.redhat.com/security/cve/cve-2025-58903 https://vigilance.fr/vulnerability/FortiOS-NULL-pointer-dereference-via-Unchecked-Return-Value-48458

Patch

https://fortiguard.fortinet.com/psirt/FG-IR-25-653

Share on: