Back to Database
Status published
Unknown
CVE-2024-22396
An Integer-based buffer overflow vulnerability in the SonicOS via IPSec...
Vulnerability Description
An Integer-based buffer overflow vulnerability in the SonicOS via IPSec allows a remote attacker in specific conditions to cause Denial of Service (DoS) and potentially execute arbitrary code by sending a specially crafted IKEv2 payload.
Impact Analysis
Refer to official advisory for detailed impact metrics.
Remediation
Ensure systems are updated to the latest vendor-supplied patch levels.
THREAT MONITOR
Am I Vulnerable?
Launch our assessment wizard to check if your infrastructure is exposed to • CVE-2024-22396
Credits & Attribution
No credits recorded in the NVD database.
More from SonicWall
View All →CVE-2025-40605
A Path Traversal vulnerability has been identified in the Email...
Unknown
0
CVE-2025-40604
Download of Code Without Integrity Check Vulnerability in the SonicWall...
Unknown
0
CVE-2025-40603
A potential exposure of sensitive information in log files in...
Unknown
0
CVE-2025-40602
A local privilege escalation vulnerability due to insufficient authorization in...
Unknown
0
CVE-2025-40601
A Stack-based buffer overflow vulnerability in the SonicOS SSLVPN service...
Unknown
0
Affected Vendor
SonicWall
View all reports →Affected Software
SonicOS
Vulnerable Versions:
7.0.1-5145 and earlier versions, 7.1.1-7047 and earlier versions, 6.5.4.13-105n and earlier versions, 6.5.4.4-44v-21-2340 and earlier versions
Timeline
Official Publish:
March 14th, 2024
Last Modified:
August 1st, 2024
Added to House:
July 22nd, 2026
CVSS Vectors
No vector data available