First published: Wed Apr 27 2022(Updated: )
Improper Restriction of TCP Communication Channel in HTTP/S inbound traffic from WAN to DMZ bypassing security policy until TCP handshake potentially resulting in Denial of Service (DoS) attack if a target host is vulnerable.
Credit: PSIRT@sonicwall.com
Affected Software | Affected Version | How to fix |
---|---|---|
SonicWall SonicOS | >=7.0.0.0<=7.0.1-5030-r2007 | |
Sonicwall Nsa 2650 | ||
Sonicwall Nsa 2700 | ||
Sonicwall Nsa 3650 | ||
Sonicwall Nsa 3700 | ||
Sonicwall Nsa 4650 | ||
Sonicwall Nsa 4700 | ||
Sonicwall Nsa 5650 | ||
Sonicwall Nsa 5700 | ||
Sonicwall Nsa 6650 | ||
Sonicwall Nsa 6700 | ||
Sonicwall Nsa 9250 | ||
Sonicwall Nsa 9450 | ||
Sonicwall Nsa 9650 | ||
Sonicwall Soho 250 | ||
Sonicwall Soho 250w | ||
Sonicwall Tz270 | ||
Sonicwall Tz270w | ||
Sonicwall Tz300 | ||
Sonicwall Tz300p | ||
Sonicwall Tz300w | ||
Sonicwall Tz350 | ||
Sonicwall Tz350w | ||
Sonicwall Tz370 | ||
Sonicwall Tz370w | ||
Sonicwall Tz400 | ||
Sonicwall Tz400w | ||
Sonicwall Tz470 | ||
Sonicwall Tz470w | ||
Sonicwall Tz500 | ||
Sonicwall Tz500w | ||
Sonicwall Tz570 | ||
Sonicwall Tz570p | ||
Sonicwall Tz570w | ||
Sonicwall Tz600 | ||
Sonicwall Tz600p | ||
Sonicwall Tz670 | ||
SonicWall SonicOS | >=7.0.0.0<=7.0.1.0-5030-1391 | |
Sonicwall Nsv 10 | ||
Sonicwall Nsv 100 | ||
Sonicwall Nsv 200 | ||
Sonicwall Nsv 25 | ||
Sonicwall Nsv 270 | ||
Sonicwall Nsv 300 | ||
Sonicwall Nsv 400 | ||
Sonicwall Nsv 470 | ||
Sonicwall Nsv 50 | ||
Sonicwall Nsv 800 | ||
Sonicwall Nsv 870 | ||
SonicWall SonicOS | >=7.0.0.0<=7.0.1-5030-r780 | |
Sonicwall Nssp 10700 | ||
Sonicwall Nssp 11700 | ||
Sonicwall Nssp 12400 | ||
Sonicwall Nssp 12800 | ||
Sonicwall Nssp 13700 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2022-22275 is a vulnerability that allows for improper restriction of TCP communication channel in HTTP/S inbound traffic, potentially resulting in a Denial of Service (DoS) attack.
SonicWall SonicOS versions 7.0.0.0 to 7.0.1-5030-r2007 are affected by CVE-2022-22275.
CVE-2022-22275 has a severity rating of 7.5, indicating a high severity.
To fix CVE-2022-22275, it is recommended to update to a patched version of SonicWall SonicOS.
You can find more information about CVE-2022-22275 on the SonicWall PSIRT website.