Skip to content
VulniPulse
Highest advisory severityHigh 1 vendor · 1 advisory

CVE-2026-70465

CVE-2026-70465: 1 tracked advisory record across Fortinet. Compare vendor sources and published fix guidance.

Compare the source-linked records below. Ratings and product/version details belong to each advisory; they are not a single CVE-wide score or proof that every listed product is affected. How VulniPulse collects and checks evidence.

Vendor advisory comparison

Fortinet

1 advisory
  • Advisory severityHigh7.3

    High [CVE-2026-70465] Heap overflow in kernel driver due to missing size validation

    FG-IR-26-156Source published Source updated

    CVSSv3 Score: 7.3 A buffer copy without checking size of input vulnerability [CWE-120] in FortiClient Windows may allow an unauthenticated attacker in a position to alter or craft DNS responses to the targeted host to execute arbitrary code via malicious packets. Revised on 2026-08-12 00:00:00

    Affected products in this advisory
    • FortiClientWindows
    Source-reported affected versions
    • FortiClientWindows: 7.2.0 through 7.4.3 (vendor-listed versions)
    Source-reported fixed versions
    • FortiClientWindows 7.4: 7.4.4
    • FortiClientWindows 7.2: 7.2.12
    Mitigation guidance
    • Upgrade per the Affected/Solution table: FortiClientWindows 7.4: 7.4.4; FortiClientWindows 7.2: 7.2.12.
    Workarounds
    • Disable application based filtering in FortiClient EMS VPN configuration:
    • FortiClient EMS > Remote Access Profile > VPN Tunnel > "Toggle" Application Based

Android app · Google Play

Monitor future Fortinet CVEs from your phone.

Choose a whole vendor or a precise platform, then receive matching security advisories by phone notification, email, or both. Coverage follows 34 official vendor sources and 160+ reviewed platform categories.

Matching phone alertsOptional email delivery