A Null Pointer Dereference vulnerability has been identified in the SonicOS SSLVPN Virtual Office interface. This issue could allow a remote, unauthenticated attacker to trigger a crash in the firewall, potentially resulting in a Denial-of-Service (DoS) condition.
Please review the table below to see the products and their versions that are impacted:
| Affected Platforms | Affected Versions |
| Gen7 NSv - NSv 270, NSv 470, NSv 870 | Version 7.1.1-7040 to 7.1.3-7015 (7.1.x only |
| TZ80 | 8.0.0-8037 and earlier versions |
NOTE: SonicOS GEN6 and GEN7 7.0.x firmware versions are not affected by this vulnerability.
If the SSLVPN service is disabled on the firewall, this vulnerability cannot be exploited.
Organizations using the affected platforms should immediately log in to MySonicWall.com to upgrade their appliances to the fixed firmware versions outlined below.
| Fixed Platforms | Fixed Versions |
| Gen7 NSv - NSv 270, NSv 470, NSv 870 | 7.2.0-7015 and higher |
| TZ80 | 8.0.1-8017 and higher |