Qnap Vulnerability in QTS, QuTS hero, QuTScloud, and QVP (QVR Pro appliances)

Black Tiger

Addicted Member
Administrator
Moderator
Lid sinds
8 feb 2001
Berichten
34.839
Waarderingsscore
1.028
Punten
113
Leeftijd
60
Locatie
State Penitentiary
Sorry ik heb deze alleen in het Engels.

Vulnerability in QTS, QuTS hero, QuTScloud, and QVP (QVR Pro appliances)

Release date: July 28, 2023
Security ID: QSA-23-09
Severity: High
CVE identifier: CVE-2022-27600
Affected products: Certain QNAP Devices

Summary:
An uncontrolled resource consumption vulnerability has been reported to affect multiple QNAP operating systems. If exploited, the vulnerability allows remote users to launch a denial-of-service (DoS) attack.

We have already fixed the vulnerability in the following versions:
  • QTS 5.0.1.2277 build 20230112 and later
  • QTS 4.5.4.2280 build 20230112 and later
  • QuTS hero h5.0.1.2277 build 20230112 and later
  • QuTS hero h4.5.4.2374 build 20230417 and later
  • QuTScloud c5.0.1.2374 build 20230419 and later
  • QVR Pro Appliance 2.3.1.0476 and later
Recommendation:
To secure your device, we recommend regularly updating your system to the latest version to benefit from vulnerability fixes. You can check the product support status to see the latest updates available to your QNAP device.
 



Hosting Fun

Advertenties

Terug
Bovenaan Onderaan