What the vulnerability does

01Description

A Stack-based buffer overflow in the SonicOS HTTP Content-Length response header allows a remote authenticated attacker to cause Denial of Service (DoS) and potentially results in code execution in the firewall. This vulnerability affected SonicOS Gen 5, Gen 6 and Gen 7 firmware versions.

Key dates

02Disclosure timeline

January 7, 2022 CVE published
August 3, 2024 Record updated