<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: Fortinet Pre-authentication Heap-based Buffer Overflow Vulnerability (CVE-2023-27997) is covered in Palo Alto NIPS Signature ? in Next-Generation Firewall Discussions</title>
    <link>https://live.paloaltonetworks.com/t5/next-generation-firewall/fortinet-pre-authentication-heap-based-buffer-overflow/m-p/547363#M1430</link>
    <description>&lt;P&gt;Hi&amp;nbsp;&lt;a href="https://live.paloaltonetworks.com/t5/user/viewprofilepage/user-id/192693"&gt;@PavelK&lt;/a&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Glad to hear that. Many thanks for the update.&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Best Regards,&lt;/P&gt;
&lt;P&gt;Suhairul&lt;/P&gt;</description>
    <pubDate>Tue, 27 Jun 2023 05:32:50 GMT</pubDate>
    <dc:creator>Suhairul_Salleh</dc:creator>
    <dc:date>2023-06-27T05:32:50Z</dc:date>
    <item>
      <title>Fortinet Pre-authentication Heap-based Buffer Overflow Vulnerability (CVE-2023-27997) is covered in Palo Alto NIPS Signature ?</title>
      <link>https://live.paloaltonetworks.com/t5/next-generation-firewall/fortinet-pre-authentication-heap-based-buffer-overflow/m-p/546622#M1415</link>
      <description>&lt;P&gt;Hi all,&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Can I check with you the following Fortinet Pre-authentication Heap-based Buffer Overflow Vulnerability (CVE-2023-27997) is covered in Palo Alto NIPS Signature ?&lt;/P&gt;
&lt;P&gt;If yes, May I know which released signature version and threat id is covered for this vulnerability?&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&lt;STRONG&gt;&lt;U&gt;Vulnerability Details:&lt;/U&gt;&lt;/STRONG&gt;&lt;/P&gt;
&lt;TABLE&gt;
&lt;TBODY&gt;
&lt;TR&gt;
&lt;TD width="113"&gt;
&lt;P&gt;Title&lt;/P&gt;
&lt;/TD&gt;
&lt;TD width="483"&gt;
&lt;P&gt;&lt;STRONG&gt;Fortinet Pre-authentication Heap-based Buffer Overflow &lt;/STRONG&gt;Vulnerability&lt;/P&gt;
&lt;/TD&gt;
&lt;/TR&gt;
&lt;TR&gt;
&lt;TD width="113"&gt;
&lt;P&gt;CVE ID&lt;/P&gt;
&lt;/TD&gt;
&lt;TD width="483"&gt;
&lt;P&gt;&lt;STRONG&gt;CVE-2023-27997&lt;/STRONG&gt;&lt;/P&gt;
&lt;/TD&gt;
&lt;/TR&gt;
&lt;TR&gt;
&lt;TD width="113"&gt;
&lt;P&gt;CVE Summary&lt;/P&gt;
&lt;/TD&gt;
&lt;TD width="483"&gt;
&lt;P&gt;Fortinet published an advisory on a pre-authentication heap-based buffer overflow vulnerability (CVE-2023-27997) in FortiOS and FortiProxy SSL-VPN. Successful exploitation of the vulnerability may allow a remote attacker to execute arbitrary code or commands via specially crafted requests.&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;The vulnerability has a &lt;STRONG&gt;CVSS base score of 9.8&lt;/STRONG&gt;.&lt;/P&gt;
&lt;/TD&gt;
&lt;/TR&gt;
&lt;TR&gt;
&lt;TD width="113"&gt;
&lt;P&gt;Link(s)&lt;/P&gt;
&lt;/TD&gt;
&lt;TD width="483"&gt;
&lt;P&gt;&lt;EM&gt;&lt;A href="https://nam11.safelinks.protection.outlook.com/?url=https%3A%2F%2Fwww.fortiguard.com%2Fpsirt%2FFG-IR-23-097&amp;amp;data=05%7C01%7Cpansupportnoc.apac%40westcon.com%7Cd17e1abd8f084c62e29708db71583107%7Cec8933c6cfb24dd9bfc9621cde1dea8f%7C0%7C0%7C638228395827571116%7CUnknown%7CTWFpbGZsb3d8eyJWIjoiMC4wLjAwMDAiLCJQIjoiV2luMzIiLCJBTiI6Ik1haWwiLCJXVCI6Mn0%3D%7C3000%7C%7C%7C&amp;amp;sdata=m2S9w2K0IBI8ba2hTMn2PK2GZUVhpcre0akSxcUeOq4%3D&amp;amp;reserved=0" target="_blank"&gt;https://www.fortiguard.com/psirt/FG-IR-23-097&lt;/A&gt;&lt;/EM&gt;&lt;/P&gt;
&lt;/TD&gt;
&lt;/TR&gt;
&lt;/TBODY&gt;
&lt;/TABLE&gt;</description>
      <pubDate>Wed, 21 Jun 2023 01:59:55 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/next-generation-firewall/fortinet-pre-authentication-heap-based-buffer-overflow/m-p/546622#M1415</guid>
      <dc:creator>Suhairul_Salleh</dc:creator>
      <dc:date>2023-06-21T01:59:55Z</dc:date>
    </item>
    <item>
      <title>Re: Fortinet Pre-authentication Heap-based Buffer Overflow Vulnerability (CVE-2023-27997) is covered in Palo Alto NIPS Signature ?</title>
      <link>https://live.paloaltonetworks.com/t5/next-generation-firewall/fortinet-pre-authentication-heap-based-buffer-overflow/m-p/547158#M1422</link>
      <description>&lt;P&gt;Hi &lt;a href="https://live.paloaltonetworks.com/t5/user/viewprofilepage/user-id/294035"&gt;@Suhairul_Salleh&lt;/a&gt; ,&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Unfortunately it seems PAN haven't published official IPS signature to cover this vulnerability, yet.&lt;/P&gt;</description>
      <pubDate>Sun, 25 Jun 2023 08:06:33 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/next-generation-firewall/fortinet-pre-authentication-heap-based-buffer-overflow/m-p/547158#M1422</guid>
      <dc:creator>aleksandar.astardzhiev</dc:creator>
      <dc:date>2023-06-25T08:06:33Z</dc:date>
    </item>
    <item>
      <title>Re: Fortinet Pre-authentication Heap-based Buffer Overflow Vulnerability (CVE-2023-27997) is covered in Palo Alto NIPS Signature ?</title>
      <link>https://live.paloaltonetworks.com/t5/next-generation-firewall/fortinet-pre-authentication-heap-based-buffer-overflow/m-p/547186#M1424</link>
      <description>&lt;P&gt;Hi&amp;nbsp;&lt;a href="https://live.paloaltonetworks.com/t5/user/viewprofilepage/user-id/70130"&gt;@aleksandar.astardzhiev&lt;/a&gt;&amp;nbsp;,&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Thanks for the reply.&lt;/P&gt;
&lt;P&gt;May I know is it going to be released soon? and when it will be released?&lt;/P&gt;</description>
      <pubDate>Mon, 26 Jun 2023 03:07:08 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/next-generation-firewall/fortinet-pre-authentication-heap-based-buffer-overflow/m-p/547186#M1424</guid>
      <dc:creator>Suhairul_Salleh</dc:creator>
      <dc:date>2023-06-26T03:07:08Z</dc:date>
    </item>
    <item>
      <title>Re: Fortinet Pre-authentication Heap-based Buffer Overflow Vulnerability (CVE-2023-27997) is covered in Palo Alto NIPS Signature ?</title>
      <link>https://live.paloaltonetworks.com/t5/next-generation-firewall/fortinet-pre-authentication-heap-based-buffer-overflow/m-p/547361#M1429</link>
      <description>&lt;P&gt;Hello&amp;nbsp;&lt;a href="https://live.paloaltonetworks.com/t5/user/viewprofilepage/user-id/294035"&gt;@Suhairul_Salleh&lt;/a&gt;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;the signature for&amp;nbsp;CVE-2023-27997 has been released today in the content update: 8725.&lt;/P&gt;
&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="PavelK_0-1687840743187.png" style="width: 999px;"&gt;&lt;img src="https://live.paloaltonetworks.com/t5/image/serverpage/image-id/51210i35324B25B82864E5/image-size/large?v=v2&amp;amp;px=999" role="button" title="PavelK_0-1687840743187.png" alt="PavelK_0-1687840743187.png" /&gt;&lt;/span&gt;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Kind Regards&lt;/P&gt;
&lt;P&gt;Pavel&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Tue, 27 Jun 2023 04:39:38 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/next-generation-firewall/fortinet-pre-authentication-heap-based-buffer-overflow/m-p/547361#M1429</guid>
      <dc:creator>PavelK</dc:creator>
      <dc:date>2023-06-27T04:39:38Z</dc:date>
    </item>
    <item>
      <title>Re: Fortinet Pre-authentication Heap-based Buffer Overflow Vulnerability (CVE-2023-27997) is covered in Palo Alto NIPS Signature ?</title>
      <link>https://live.paloaltonetworks.com/t5/next-generation-firewall/fortinet-pre-authentication-heap-based-buffer-overflow/m-p/547363#M1430</link>
      <description>&lt;P&gt;Hi&amp;nbsp;&lt;a href="https://live.paloaltonetworks.com/t5/user/viewprofilepage/user-id/192693"&gt;@PavelK&lt;/a&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Glad to hear that. Many thanks for the update.&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Best Regards,&lt;/P&gt;
&lt;P&gt;Suhairul&lt;/P&gt;</description>
      <pubDate>Tue, 27 Jun 2023 05:32:50 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/next-generation-firewall/fortinet-pre-authentication-heap-based-buffer-overflow/m-p/547363#M1430</guid>
      <dc:creator>Suhairul_Salleh</dc:creator>
      <dc:date>2023-06-27T05:32:50Z</dc:date>
    </item>
  </channel>
</rss>

