Vulnerability Monitor

The vendors, products, and vulnerabilities you care about

CVE-2024-29013


Heap-based buffer overflow vulnerability in the SonicOS SSL-VPN allows an authenticated remote attacker to cause Denial of Service (DoS) via memcpy function.


Published

2024-06-20T09:15:11.543

Last Modified

2025-03-25T17:15:53.900

Status

Modified

Source

[email protected]

Severity

CVSSv3.1: 6.5 (MEDIUM)

Weaknesses
  • Type: Secondary
    CWE-122
  • Type: Primary
    CWE-787

Affected Vendors & Products
Type Vendor Product Version/Range Vulnerable?
Operating System sonicwall sonicos < 7.0.1-5161 Yes
Operating System sonicwall sonicos < 7.1.1-7058 Yes
Operating System sonicwall sonicos < 7.1.2-7019 Yes
Hardware sonicwall nsa_2700 - No
Hardware sonicwall nsa_3700 - No
Hardware sonicwall nsa_4700 - No
Hardware sonicwall nsa_5700 - No
Hardware sonicwall nsa_6700 - No
Hardware sonicwall nssp_10700 - No
Hardware sonicwall nssp_11700 - No
Hardware sonicwall nssp_13700 - No
Hardware sonicwall nsv_270 - No
Hardware sonicwall nsv_470 - No
Hardware sonicwall nsv_870 - No
Hardware sonicwall tz270 - No
Hardware sonicwall tz270w - No
Hardware sonicwall tz370 - No
Hardware sonicwall tz370w - No
Hardware sonicwall tz470 - No
Hardware sonicwall tz470w - No
Hardware sonicwall tz570 - No
Hardware sonicwall tz570p - No
Hardware sonicwall tz570w - No
Hardware sonicwall tz670 - No

References