CVE-2025-29879: File Station 5
Published Aug 29, 2025
·Updated
A NULL pointer dereference vulnerability has been reported to affect File Station 5. If a remote attacker gains a user account, they can then exploit the vulnerability to launch a denial-of-service (DoS) attack.
We have already fixed the vulnerability in the following version: File Station 5 5.5.6.4907 and later
Affected Software
2 affected components
File Station File Station<5.5.6.4907
QNAP File Station>=5.5.6.4691<5.5.6.4907
Remediation
Information
We have already fixed the vulnerability in the following version:
File Station 5 5.5.6.4907 and later
Event History
Aug 29, 2025
CVE Published
via MITRE·05:06 PM
Data Sourced
via MITRE·05:06 PM
RemedyDescriptionWeakness
Data Sourced
via NVD·05:15 PM
DescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2025-29879?
CVE-2025-29879 has been classified as a vulnerability that can lead to denial-of-service (DoS) attacks.
2
How do I fix CVE-2025-29879?
To fix CVE-2025-29879, upgrade to File Station version 5.5.6.4908 or later.
3
Who is affected by CVE-2025-29879?
Users of File Station version 5.5.6.4907 or earlier are affected by CVE-2025-29879.
4
Can CVE-2025-29879 be exploited remotely?
Yes, CVE-2025-29879 can be exploited by remote attackers who have user accounts.
5
What type of attack does CVE-2025-29879 facilitate?
CVE-2025-29879 facilitates denial-of-service (DoS) attacks against File Station.