CVE-2021-20024

Multiple Out-of-Bound read vulnerability in SonicWall Switch when handling LLDP Protocol allows an attacker to cause a system instability or potentially read sensitive information from the memory locations.
References
Configurations

Configuration 1 (hide)

AND
cpe:2.3:o:sonicwall:switch:*:*:*:*:*:*:*:*
OR cpe:2.3:h:sonicwall:sws12-10fpoe:-:*:*:*:*:*:*:*
cpe:2.3:h:sonicwall:sws12-8:-:*:*:*:*:*:*:*
cpe:2.3:h:sonicwall:sws12-8poe:-:*:*:*:*:*:*:*
cpe:2.3:h:sonicwall:sws14-24:-:*:*:*:*:*:*:*
cpe:2.3:h:sonicwall:sws14-24fpoe:-:*:*:*:*:*:*:*
cpe:2.3:h:sonicwall:sws14-48:-:*:*:*:*:*:*:*
cpe:2.3:h:sonicwall:sws14-48fpoe:-:*:*:*:*:*:*:*

History

16 Jul 2021, 16:59

Type Values Removed Values Added
CWE CWE-125
CVSS v2 : unknown
v3 : unknown
v2 : 6.8
v3 : 8.1
References (CONFIRM) https://psirt.global.sonicwall.com/vuln-detail/SNWLID-2021-0011 - (CONFIRM) https://psirt.global.sonicwall.com/vuln-detail/SNWLID-2021-0011 - Vendor Advisory
CPE cpe:2.3:h:sonicwall:sws12-10fpoe:-:*:*:*:*:*:*:*
cpe:2.3:h:sonicwall:sws12-8:-:*:*:*:*:*:*:*
cpe:2.3:h:sonicwall:sws14-48:-:*:*:*:*:*:*:*
cpe:2.3:h:sonicwall:sws12-8poe:-:*:*:*:*:*:*:*
cpe:2.3:o:sonicwall:switch:*:*:*:*:*:*:*:*
cpe:2.3:h:sonicwall:sws14-48fpoe:-:*:*:*:*:*:*:*
cpe:2.3:h:sonicwall:sws14-24:-:*:*:*:*:*:*:*
cpe:2.3:h:sonicwall:sws14-24fpoe:-:*:*:*:*:*:*:*

09 Jul 2021, 22:15

Type Values Removed Values Added
New CVE

Information

Published : 2021-07-09 22:15

Updated : 2023-12-10 13:55


NVD link : CVE-2021-20024

Mitre link : CVE-2021-20024

CVE.ORG link : CVE-2021-20024


JSON object : View

Products Affected

sonicwall

  • sws14-48fpoe
  • sws12-8
  • sws14-24
  • switch
  • sws14-24fpoe
  • sws12-8poe
  • sws14-48
  • sws12-10fpoe
CWE
CWE-125

Out-of-bounds Read