{ "id": "CVE-2024-22396", "sourceIdentifier": "PSIRT@sonicwall.com", "published": "2024-03-14T04:15:09.080", "lastModified": "2024-03-14T12:52:09.877", "vulnStatus": "Awaiting Analysis", "descriptions": [ { "lang": "en", "value": "An Integer-based buffer overflow vulnerability in the SonicOS via IPSec allows a remote attacker in specific conditions to cause Denial of Service (DoS) and potentially execute arbitrary code by sending a specially crafted IKEv2 payload." }, { "lang": "es", "value": "Una vulnerabilidad de desbordamiento de b\u00fafer de almacenamiento din\u00e1mico en SonicOS a trav\u00e9s de IPSec permite que un atacante remoto en condiciones espec\u00edficas cause Denegaci\u00f3n de Servicio (DoS) y potencialmente ejecute c\u00f3digo arbitrario enviando un payload IKEv2 especialmente manipulado." } ], "metrics": {}, "weaknesses": [ { "source": "PSIRT@sonicwall.com", "type": "Primary", "description": [ { "lang": "en", "value": "CWE-190" } ] } ], "references": [ { "url": "https://psirt.global.sonicwall.com/vuln-detail/SNWLID-2024-0004", "source": "PSIRT@sonicwall.com" } ] }