SonicWall Product Security Update Advisory

SonicWall Product Security Update Advisory

Overview

 

SonicWall has released security updates to fix vulnerabilities in SonicWall products. Users of affected products are advised to update to the latest version.
 

 

Affected Products

 

CVE-2025-40596, CVE-2025-40597, CVE-2025-40599

 

SMA 100 Series Versions: 10.2.1.15-81sv and earlier

 

 

Resolved Vulnerabilities

 

Stack-based Buffer Overflow Vulnerability in the SMA 100 Series (CVE-2025-40596)
Heap-based buffer overflow vulnerability in the SMA 100 Series (CVE-2025-40597)
Authenticated Arbitrary File Upload Vulnerability in the Web Management Interface of the SMA 100 Series (CVE-2025-40599)

 

 

Vulnerability Patches

Vulnerability Patches have been made available in the latest updates. Please follow the instructions on the Referenced Sites to update to the latest Vulnerability Patches version.

 

CVE-2025-40596, CVE-2025-40597, CVE-2025-40599

 

SMA 100 Series versions: 10.2.2.1-90sv and later

 

 

References

 

[1] Vulnerability List
https://psirt.global.sonicwall.com/vuln-detail/SNWLID-2025-0012
[2] Vulnerability List
https://psirt.global.sonicwall.com/vuln-detail/SNWLID-2025-0014