Critical vulnerabilities open Synology, QNAP NAS devices to attack

Users of Synology and QNAP network-attached storage (NAS) devices are advised to be on the lookout for patches for several critical vulnerabilities affecting Netatalk, an open-source implemention of the Apple Filing Protocol (AFP) that allows Unix-like… Continue reading Critical vulnerabilities open Synology, QNAP NAS devices to attack

QNAP Warns Against ‘Dirty Pipe’ Linux Flaw That Affects Several NAS Devices

Here’s a look at what you need to know QNAP has issued an advisory about a new Dirty Pipe Linux vulnerability that affects a wide range of Network Attached Storage (NAS) devices. It allows attackers to overwrite data in arbitrary read-only files. The Dirty Pipe security flaw affects all NAS devices running kernel version 5.10.60. […] Continue reading QNAP Warns Against ‘Dirty Pipe’ Linux Flaw That Affects Several NAS Devices

Samba bug may allow code execution as root on Linux machines, NAS devices (CVE-2021-44142)

A critical vulnerability (CVE-2021-44142) in Samba, a widely used open source implementation of the Server Message Block (SMB) networking protocol, could allow attackers to execute arbitrary code as root on affected Samba installations. Several updated… Continue reading Samba bug may allow code execution as root on Linux machines, NAS devices (CVE-2021-44142)