Hello,
our "Vulnerability Scanner" detected that libcurl.dll as vulnerable to CVE-2025-0167
Vulnerable files are:
We use free FortiClient VPN SSL, so we can't confirm if full paid version is vulnerable too.
We've upgraded to FortiClient VPN SSL 7.4.3, but libcurl.dll version is still vulnerable
Solved! Go to Solution.
After going through the PSIRT website, there are no CVEs reported for this issue.
PSIRT Advisories | FortiGuard Labs
You can raise a request to Technical Support so we can track the issue with our FortiGuard Labs.
You can also check for libcurl.dll library to upgrade it separately:
Addressing CVE-2025-0167 vulnerability - How to upgrade curl and libcurl 8.12.0 - Microsoft Q&A
After going through the PSIRT website, there are no CVEs reported for this issue.
PSIRT Advisories | FortiGuard Labs
You can raise a request to Technical Support so we can track the issue with our FortiGuard Labs.
You can also check for libcurl.dll library to upgrade it separately:
Addressing CVE-2025-0167 vulnerability - How to upgrade curl and libcurl 8.12.0 - Microsoft Q&A
OK, Thanks!
We've sent a request to Fortinet PSIRT.
Manually changing libcurl.dll inside C:\Program Files\Fortinet, would require us to do it again the next time we update FortiClient.
User | Count |
---|---|
2571 | |
1365 | |
796 | |
652 | |
455 |
The Fortinet Security Fabric brings together the concepts of convergence and consolidation to provide comprehensive cybersecurity protection for all users, devices, and applications and across all network edges.
Copyright 2025 Fortinet, Inc. All Rights Reserved.