A stack buffer overflow vulnerability has been reported to affect QNAP device running NVR Storage Expansion. If exploited, this vulnerability allows attackers to execute arbitrary code. We have already fixed this vulnerability in the following versions of NVR Storage Expansion: NVR Storage Expansion 1.0.6 ( 2021/08/03 ) and later
Project Subscriptions
| Vendors | Products |
|---|---|
|
Qnap
Subscribe
|
Ej1600
Subscribe
Ej1600 Firmware
Subscribe
Tl-d1600s
Subscribe
Tl-d1600s Firmware
Subscribe
Tl-d400s
Subscribe
Tl-d400s Firmware
Subscribe
Tl-d800c
Subscribe
Tl-d800c Firmware
Subscribe
Tl-d800s
Subscribe
Tl-d800s Firmware
Subscribe
Tl-r1200c-rp
Subscribe
Tl-r1200c-rp Firmware
Subscribe
Tl-r1200s-rp
Subscribe
Tl-r1200s-rp Firmware
Subscribe
Tl-r1220sep-rp
Subscribe
Tl-r1220sep-rp Firmware
Subscribe
Tl-r1620sdc
Subscribe
Tl-r1620sdc Firmware
Subscribe
Tl-r1620sep-rp
Subscribe
Tl-r1620sep-rp Firmware
Subscribe
Tl-r400s
Subscribe
Tl-r400s Firmware
Subscribe
Tr-002
Subscribe
Tr-002 Firmware
Subscribe
Tr-004
Subscribe
Tr-004 Firmware
Subscribe
Tr-004u
Subscribe
Tr-004u Firmware
Subscribe
|
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2021-21005 | A stack buffer overflow vulnerability has been reported to affect QNAP device running NVR Storage Expansion. If exploited, this vulnerability allows attackers to execute arbitrary code. We have already fixed this vulnerability in the following versions of NVR Storage Expansion: NVR Storage Expansion 1.0.6 ( 2021/08/03 ) and later |
Fixes
Solution
We have already fixed this vulnerability in the following versions of NVR Storage Expansion: NVR Storage Expansion 1.0.6 ( 2021/08/03 ) and later
Workaround
No workaround given by the vendor.
References
| Link | Providers |
|---|---|
| https://www.qnap.com/en/security-advisory/qsa-21-36 |
|
History
No history.
Projects
Sign in to view the affected projects.
Status: PUBLISHED
Assigner: qnap
Published:
Updated: 2024-09-16T22:09:54.800Z
Reserved: 2021-06-08T00:00:00
Link: CVE-2021-34345
No data.
Status : Modified
Published: 2021-09-10T04:15:18.620
Modified: 2024-11-21T06:10:12.663
Link: CVE-2021-34345
No data.
OpenCVE Enrichment
No data.
Weaknesses
EUVD