Description | This article describes the forensic image to detect Coathanger. |
Scope | FortiOS, FortiGate, Vulnerability. |
Solution |
Fortinet is aware of the advisory released by Netherlands intelligence and security services. Although the Netherlands Military only released its advisory, this vulnerability was published in December 2022 (CVE-2022-42475).
PSIRT Heap-based buffer overflow in sslvpnd
There is an article which gives instructions on how to check the devices to see if they are affected:
It is just a subset of device attacks Fortinet is already aware of and was caused by abuse of unpatched vulnerabilities. There is a blog post on the broader topic here:
There is also a blog post from January 2023 that gives a detailed analysis (it was made in cooperation with the Netherlands Military).
Fortinet does not provide forensic disk images. The reason mentioned in the Dutch advisory is that it has been collaborated with the PSIRT team on this vulnerability.
In case of any further queries, the PSIRT team can be contacted at PSIRT contact. |
The Fortinet Security Fabric brings together the concepts of convergence and consolidation to provide comprehensive cybersecurity protection for all users, devices, and applications and across all network edges.
Copyright 2025 Fortinet, Inc. All Rights Reserved.