First published: Fri Jun 11 2021(Updated: )
An out-of-bounds read vulnerability has been reported to affect certain QNAP switches running QSS. If exploited, this vulnerability allows attackers to read sensitive information on the system. This issue affects: QNAP Systems Inc. QSS versions prior to 1.0.2 build 20210122 on QSW-M2108-2C; versions prior to 1.0.2 build 20210122 on QSW-M2108-2S; versions prior to 1.0.2 build 20210122 on QSW-M2108R-2C.
Credit: security@qnapsecurity.com.tw
Affected Software | Affected Version | How to fix |
---|---|---|
Qnap Qss | <1.0.2 | |
Qnap Qsw-m2108-2c | ||
Qnap Qsw-m2108-2s | ||
Qnap Qsw-m2108r-2c |
QNAP have already fixed this vulnerability in the following versions: QSW-M2108-2C: QSS 1.0.2 build 20210122 and later QSW-M2108-2S: QSS 1.0.2 build 20210122 and later QSW-M2108R-2C: QSS 1.0.2 build 20210122 and later
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.