logo

A Vulnerability in SonicOS Could Allow for Denial of Service (DoS)

ID: 116d2b8a-63aa-5d61-b58d-ab614a001b61

STIX ID: report--116d2b8a-63aa-5d61-b58d-ab614a001b61

Feed Name: CISecurity.org Advisories

Threat Score
45/100

Date Published: 2025-11-24

Date Updated: 2026-04-27

...
...

**CVE-2025-40601 — SonicOS SSLVPN stack-based buffer overflow**: A vulnerability in the SonicOS SSLVPN service allows a remote unauthenticated attacker to trigger a denial-of-service condition that may crash affected firewalls. SonicWall PSIRT reports no known active exploitation or public proof-of-concept, and the vulnerability only affects the SSLVPN interface when enabled.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.