Home

Description

A Null Pointer Dereference vulnerability in the SonicOS SSLVPN Virtual office interface allows a remote, unauthenticated attacker to crash the firewall, potentially leading to a Denial-of-Service (DoS) condition.

PUBLISHED Reserved 2025-04-11 | Published 2025-04-23 | Updated 2025-04-23 | Assigner sonicwall

Problem types

CWE-476 NULL Pointer Dereference

Product status

Default status
unknown

7.1.1-7040 (custom)
affected

8.0.0-8037 and earlier versions
affected

References

psirt.global.sonicwall.com/vuln-detail/SNWLID-2025-0009 vendor-advisory

cve.org (CVE-2025-32818)

nvd.nist.gov (CVE-2025-32818)

Download JSON