SonicWall Family July 2024 1st Security Update Advisory

Overview

 

SonicWall(https://www.sonicwall.com) has released a security update that fixes vulnerabilities in its supplied products. Users of affected products are advised to update to the latest version.

 

Affected Products

 

NetExtender Windows (32 and 64 bit) 10.2.339 or below versions

NetExtender Windows (32 and 64 bit) 10.2.339 or below versions

 

Resolved Vulnerabilities

Vulnerability in the SonicWall SMA100 NetExtender Windows (32 and 64 bit) client in 10.2.339 and below, which allows attackers to execute arbitrary code when handling EPC client updates. (CVE-2024-29014)

 

Vulnerability Patches

 

The following product-specific Vulnerability Patches were made available in the 07/17/2024 update. For more information on Vulnerability Patches, please refer to the “FIXED SOFTWARE” section of the product-specific Referenced Sites document.

NetExtender Windows (32 and 64 bit) 10.2.341 or later versions

 

Referenced Sites

 

[1] SonicWall NetExtender Windows Client Remote Code Execution Vulnerability

https://psirt.global.sonicwall.com/vuln-detail/SNWLID-2024-0011