Medium severity5.5NVD Advisory· Published Jan 18, 2024· Updated Jun 17, 2026
CVE-2023-6340
CVE-2023-6340
Description
SonicWall Capture Client version 3.7.10, NetExtender client version 10.2.337 and earlier versions are installed with sfpmonitor.sys driver. The driver has been found to be vulnerable to Denial-of-Service (DoS) caused by Stack-based Buffer Overflow vulnerability.
Affected products
6cpe:2.3:a:sonicwall:capture_client:*:*:*:*:*:*:*:*+ 2 more
- cpe:2.3:a:sonicwall:capture_client:*:*:*:*:*:*:*:*range: <=3.7.10
- (no CPE)range: <=3.7.10
- (no CPE)range: 3.7.10 and earlier versions
cpe:2.3:a:sonicwall:netextender:*:*:*:*:*:windows:*:*+ 1 more
- cpe:2.3:a:sonicwall:netextender:*:*:*:*:*:windows:*:*range: <=10.2.337
- (no CPE)range: 10.2.337 and earlier versions
- Range: <=10.2.337
Patches
Vulnerability mechanics
References
1- psirt.global.sonicwall.com/vuln-detail/SNWLID-2023-0019nvdVendor Advisory
News mentions
0No linked articles in our index yet.