An Integer-based buffer overflow vulnerability in the SonicOS via IPSec allows a remote attacker in specific conditions to cause Denial of Service (DoS) and potentially execute arbitrary code by sending a specially crafted IKEv2 payload.
Metrics
Affected Vendors & Products
References
History
Thu, 09 Jan 2025 15:15:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Metrics |
cvssV3_1
|
Thu, 09 Jan 2025 07:30:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Description | An Integer-based buffer overflow vulnerability in the SonicOS via IPSec allows a remote attacker in specific conditions to cause Denial of Service (DoS) and potentially execute arbitrary code by sending a specially crafted IKEv2 payload. | |
Weaknesses | CWE-190 | |
References |
|
MITRE
Status: PUBLISHED
Assigner: sonicwall
Published: 2025-01-09T07:12:40.644Z
Updated: 2025-01-09T14:58:28.792Z
Reserved: 2024-07-10T15:58:49.462Z
Link: CVE-2024-40765
Vulnrichment
Updated: 2025-01-09T14:58:22.161Z
NVD
Status : Received
Published: 2025-01-09T08:15:26.797
Modified: 2025-01-09T15:15:15.560
Link: CVE-2024-40765
Redhat
No data.