SonicWall Family July 2024 1st Security Update Advisory
Overview
SonicWall(https://www.sonicwall.com) has released a security update that fixes vulnerabilities in its supplied products. Users of affected products are advised to update to the latest version.
Affected Products
NetExtender Windows (32 and 64 bit) 10.2.339 or below versions
NetExtender Windows (32 and 64 bit) 10.2.339 or below versions
Resolved Vulnerabilities
Vulnerability in the SonicWall SMA100 NetExtender Windows (32 and 64 bit) client in 10.2.339 and below, which allows attackers to execute arbitrary code when handling EPC client updates. (CVE-2024-29014)
Vulnerability Patches
The following product-specific Vulnerability Patches were made available in the 07/17/2024 update. For more information on Vulnerability Patches, please refer to the “FIXED SOFTWARE” section of the product-specific Referenced Sites document.
NetExtender Windows (32 and 64 bit) 10.2.341 or later versions
Referenced Sites
[1] SonicWall NetExtender Windows Client Remote Code Execution Vulnerability
https://psirt.global.sonicwall.com/vuln-detail/SNWLID-2024-0011