Fortra has addressed several vulnerabilities within its Core Privileged Access Manager (BoKS) by releasing crucial patches. Among these, three were identified as critical, underscoring the importance of updating.
Understanding Fortra’s BoKS
The BoKS solution is integral for organizations managing Unix and Linux systems, facilitating centralized policy implementation and access control. This recent development highlights a significant flaw affecting BoKS Manager setups that utilize keytab for managing Active Directory service accounts.
Details of the Critical Vulnerabilities
One of the critical vulnerabilities, tracked as CVE-2026-79901 with a CVSS score of 9.9, arises from a predictable password generation method linked to Unix timestamps. This flaw allows potential attackers to bypass authentication by estimating password change times and predicting possible passwords.
Another severe issue, CVE-2026-79898, scored at 9.1, involves command injection capabilities within the crlserver. Authenticated users could exploit this to execute shell commands with root privileges on the BoKS Master, posing significant risks.
Additional Vulnerabilities and Resolutions
Fortra also rectified a stack buffer overflow vulnerability, identified as CVE-2026-12627 with a CVSS score of 9.8, which could lead to memory corruption through BoKS’s autoregistration function. Furthermore, five other vulnerabilities of high to medium severity were addressed, including heap buffer overflows and insecure temporary file handling.
While no evidence currently suggests these vulnerabilities have been exploited in the wild, Fortra advises users to implement the patches promptly to safeguard against potential threats.
Future Outlook and Security Enhancements
Fortra’s swift response to these vulnerabilities is crucial for maintaining the security of its users. By patching these issues, they have reinforced the integrity of BoKS, ensuring continued protection for systems reliant on this management tool. Users are encouraged to stay informed through Fortra’s product security updates for ongoing protection.
