QNAP 新闻室

掌握 QNAP 最新的新闻信息、奖项并与我们团队联系

QNAP Releases Qfixes for Samba Writable Share Vulnerability

Taipei, Taiwan, June 2, 2017 – The administrators of the open-source software Samba have disclosed a vulnerability in their software, which can be used to execute malicious code on affected devices. QNAP® Systems, Inc is committed to protecting the privacy and data security of our users and has released Qfixes for QNAP NAS to patch this vulnerability. QNAP urges users to install these Qfixes on their QNAP NAS to protect against unauthorized access.

Samba is a network protocol for file and printer sharing. The CVE-2017-7494 remote code execution vulnerability allows clients with write permission to upload a shared library to a shared folder, and then cause the server to load and execute it. By utilizing this exploit, malicious users can run any code on remote servers and obtain administrator privileges. QNAP has provided separate Qfixes for QTS version 4.3.x and 4.2.x. QNAP recommends that users update QTS to the latest version available for their NAS, and then install the Qfix.

To learn more about how QNAP safeguards cyber security, please visit QNAP Security Bulletins and Advisories

 

关于 QNAP

QNAP 命名源自于高质量网络设备制造商(Quality Network Appliance Provider),我们致力研发软件应用,匠心优化硬件设计,并设立自有生产线以提供诸多且先进的科技解决方案。QNAP 专注于存储、网通及智能视讯产品创新,并提供 Cloud NAS 解决方案,通过软件订阅制及多元化服务管道建构崭新的科技生态圈。在 QNAP 的企业蓝图中,NAS 早已突破存储设备的框架,搭配云基础网络架构上的多项研发创新,协助客户高效率导入人工智能分析、边缘运算及信息整合应用,创造更大优势与价值。

媒体洽询

marketing@qnap.com

选择规格

      显示更多 隐藏更多
      open menu
      back to top