A Stack-based buffer overflow vulnerability in the SonicOS SSLVPN service allows a remote unauthenticated attacker to cause Denial of Service (DoS), which could cause an impacted firewall to crash.
Metrics
Affected Vendors & Products
References
History
Fri, 12 Dec 2025 16:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Sonicwall nsa 2700
Sonicwall nsa 2800 Sonicwall nsa 3700 Sonicwall nsa 3800 Sonicwall nsa 4700 Sonicwall nsa 4800 Sonicwall nsa 5700 Sonicwall nsa 5800 Sonicwall nsa 6700 Sonicwall nssp 10700 Sonicwall nssp 11700 Sonicwall nssp 13700 Sonicwall nssp 15700 Sonicwall nsv270 Sonicwall nsv470 Sonicwall nsv870 Sonicwall tz270 Sonicwall tz270w Sonicwall tz280 Sonicwall tz370 Sonicwall tz370w Sonicwall tz380 Sonicwall tz470 Sonicwall tz470w Sonicwall tz480 Sonicwall tz570 Sonicwall tz570p Sonicwall tz570w Sonicwall tz580 Sonicwall tz670 Sonicwall tz680 Sonicwall tz80 |
|
| CPEs | cpe:2.3:h:sonicwall:nsa_2700:-:*:*:*:*:*:*:* cpe:2.3:h:sonicwall:nsa_2800:-:*:*:*:*:*:*:* cpe:2.3:h:sonicwall:nsa_3700:-:*:*:*:*:*:*:* cpe:2.3:h:sonicwall:nsa_3800:-:*:*:*:*:*:*:* cpe:2.3:h:sonicwall:nsa_4700:-:*:*:*:*:*:*:* cpe:2.3:h:sonicwall:nsa_4800:-:*:*:*:*:*:*:* cpe:2.3:h:sonicwall:nsa_5700:-:*:*:*:*:*:*:* cpe:2.3:h:sonicwall:nsa_5800:-:*:*:*:*:*:*:* cpe:2.3:h:sonicwall:nsa_6700:-:*:*:*:*:*:*:* cpe:2.3:h:sonicwall:nssp_10700:-:*:*:*:*:*:*:* cpe:2.3:h:sonicwall:nssp_11700:-:*:*:*:*:*:*:* cpe:2.3:h:sonicwall:nssp_13700:-:*:*:*:*:*:*:* cpe:2.3:h:sonicwall:nssp_15700:-:*:*:*:*:*:*:* cpe:2.3:h:sonicwall:nsv270:-:*:*:*:*:*:*:* cpe:2.3:h:sonicwall:nsv470:-:*:*:*:*:*:*:* cpe:2.3:h:sonicwall:nsv870:-:*:*:*:*:*:*:* cpe:2.3:h:sonicwall:tz270:-:*:*:*:*:*:*:* cpe:2.3:h:sonicwall:tz270w:-:*:*:*:*:*:*:* cpe:2.3:h:sonicwall:tz280:-:*:*:*:*:*:*:* cpe:2.3:h:sonicwall:tz370:-:*:*:*:*:*:*:* cpe:2.3:h:sonicwall:tz370w:-:*:*:*:*:*:*:* cpe:2.3:h:sonicwall:tz380:-:*:*:*:*:*:*:* cpe:2.3:h:sonicwall:tz470:-:*:*:*:*:*:*:* cpe:2.3:h:sonicwall:tz470w:-:*:*:*:*:*:*:* cpe:2.3:h:sonicwall:tz480:-:*:*:*:*:*:*:* cpe:2.3:h:sonicwall:tz570:-:*:*:*:*:*:*:* cpe:2.3:h:sonicwall:tz570p:-:*:*:*:*:*:*:* cpe:2.3:h:sonicwall:tz570w:-:*:*:*:*:*:*:* cpe:2.3:h:sonicwall:tz580:-:*:*:*:*:*:*:* cpe:2.3:h:sonicwall:tz670:-:*:*:*:*:*:*:* cpe:2.3:h:sonicwall:tz680:-:*:*:*:*:*:*:* cpe:2.3:h:sonicwall:tz80:-:*:*:*:*:*:*:* cpe:2.3:o:sonicwall:sonicos:*:*:*:*:*:*:*:* |
|
| Vendors & Products |
Sonicwall nsa 2700
Sonicwall nsa 2800 Sonicwall nsa 3700 Sonicwall nsa 3800 Sonicwall nsa 4700 Sonicwall nsa 4800 Sonicwall nsa 5700 Sonicwall nsa 5800 Sonicwall nsa 6700 Sonicwall nssp 10700 Sonicwall nssp 11700 Sonicwall nssp 13700 Sonicwall nssp 15700 Sonicwall nsv270 Sonicwall nsv470 Sonicwall nsv870 Sonicwall tz270 Sonicwall tz270w Sonicwall tz280 Sonicwall tz370 Sonicwall tz370w Sonicwall tz380 Sonicwall tz470 Sonicwall tz470w Sonicwall tz480 Sonicwall tz570 Sonicwall tz570p Sonicwall tz570w Sonicwall tz580 Sonicwall tz670 Sonicwall tz680 Sonicwall tz80 |
Mon, 24 Nov 2025 09:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Sonicwall
Sonicwall sonicos |
|
| Vendors & Products |
Sonicwall
Sonicwall sonicos |
Thu, 20 Nov 2025 19:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
cvssV3_1
|
Thu, 20 Nov 2025 12:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | A Stack-based buffer overflow vulnerability in the SonicOS SSLVPN service allows a remote unauthenticated attacker to cause Denial of Service (DoS), which could cause an impacted firewall to crash. | |
| Weaknesses | CWE-121 | |
| References |
|
Status: PUBLISHED
Assigner: sonicwall
Published: 2025-11-20T12:26:54.465Z
Updated: 2025-11-20T18:31:18.802Z
Reserved: 2025-04-16T08:34:51.361Z
Link: CVE-2025-40601
Updated: 2025-11-20T18:31:13.901Z
Status : Analyzed
Published: 2025-11-20T15:17:28.570
Modified: 2025-12-12T15:57:37.410
Link: CVE-2025-40601
No data.