FortiGate
FortiGate Next Generation Firewall utilizes purpose-built security processors and threat intelligence security services from FortiGuard labs to deliver top-rated protection and high performance, including encrypted traffic.
mattchow_FTNT
Article Id 326426
Description This article describes additional information about CVE-2024-26015 which can be found via the following link: PSIRT FortiOS - IP address validation mishandles zero characters.
Scope FortiGate.
Solution

It does not affect FortiGate if the IP List definition via External Connectors is not configured, and it depends on where the list is used, it may affect firewall policy or local-in policy.

 

To check the configuration, login to FortiGate and go to Security Fabric -> External Connectors -> Threat Feeds -> IP Address as shown in the screenshot below:

 

threat feeds.jpg

 

The vulnerability is about FortiGate converting IP addresses in the external IP list unexpectedly. 

If there is no IP List defined by External Connectors, the vulnerability is not present.