ZLD4.73 & ZLD5.36 patch 2 Official Version Released to address Buffer Overflow Issues
All Replies
-
But this is older model - only USG 20, no VPN in name. Is it a same model?
0 -
The 20 is no longer supported. They quitly replaced it with the 20-VPN which is a complete different device. We are also still have some of these boxes because in the time the 40 or 60 where to expensive. Looks like in term of support we got the short end of the stick.
0 -
That would be good news.
Can you please confirm from Zyxel, that the old model USG 20 is not affected?
0 -
You are right, i just checked.
0 -
A linkedin post (see below) says it was possibile to get root access via these exploits.
If this is the case, it is easy to steal the config file and decript the passwords in there (there is a tool on the net to do that), including admin one.I strongly suggest to change all passwords.
0 -
https://www.linkedin.com/posts/425a_zyxel-zyxel-vulnerabilitymanagement-ugcPost-7067040279790256128-COHr?utm_source=share&utm_medium=member_android
0 -
That post is a bit misleading. It's referencing the CVE from April.
0 -
Greetings…..would someone be able to advice me on which firmware to use for my zywall 110 to adress these vpn issues? is the version 4.73 the one that fixes this even for my older 110? thanks a lot for any help!
0 -
Yes you can get the firmware here
0
Categories
- All Categories
- 396 Beta Program
- 2.1K Nebula
- 117 Nebula Ideas
- 81 Nebula Status and Incidents
- 5.1K Security
- 86 USG FLEX H Series
- 247 Security Ideas
- 1.3K Switch
- 69 Switch Ideas
- 916 WirelessLAN
- 34 WLAN Ideas
- 5.9K Consumer Product
- 211 Service & License
- 337 News and Release
- 71 Security Advisories
- 21 Education Center
- 5 [Campaign] Zyxel Network Detective
- 2K FAQ
- 912 Nebula FAQ
- 419 Security FAQ
- 237 Switch FAQ
- 207 WirelessLAN FAQ
- 46 Consumer Product FAQ
- 139 Service & License FAQ
- 34 Documents
- 34 Nebula Monthly Express
- 72 About Community
- 62 Security Highlight