CVE-2021-20019 – SonicWall / SonicOS – Buffer overflow

CVE-2021-20019 is a buffer overflow vulnerability impacting multiple versions of SonicWall SonicOS. A proof of concept (PoC) was not observed publicly or in the underground. This vulnerability exists because of an incomplete fix for CVE-2020-5135.

Summary:

CVE-2021-20019 is a buffer overflow vulnerability impacting multiple versions of SonicWall SonicOS. A proof of concept (PoC) was not observed publicly or in the underground. This vulnerability exists because of an incomplete fix for CVE-2020-5135.

PoC Links(if available):

Known Counter Measures:

SonicWall addressed the vulnerability in a security update with updated versions.

Links to patches(if available)

https://psirt.global.sonicwall.com/vuln-detail/SNWLID-2021-0006