Download PDF version Contact company

QNAP® Systems Inc. recently announced firmware updates for Turbo NAS systems with vulnerability to the OpenSSL Heartbleed bug (CVE-2014-0160). The operating systems vulnerable to Heartbleed are QTS versions 4.0 and 4.1. Versions 3.8 and earlier use a different version of OpenSSL and are not affected by the OpenSSL Heartbleed bug.

As described on the Common Vulnerabilities and Exposures website, the OpenSSL 1.0.1 TLS and DTLS implementation, before 1.0.1g, does not properly process Heartbeat Extension packets which allow remote attackers to obtain sensitive information by reading private keys (aka the Heartbleed bug).

“We strongly urge users of vulnerable Turbo NAS systems to update their firmware,” said Jason Hsu, Product Manager of QNAP. “Users are also recommended to contact their SSL providers to regenerate their SSL CSR/keys for server protection.

Download PDF version Download PDF version

In case you missed it

Guarding the jackpot: Intelligent perimeter detection for casinos
Guarding the jackpot: Intelligent perimeter detection for casinos

Casinos face multiple security issues caused by potential bad actors, everything from cheating to vandalism, from theft to vagrancy. A new intelligent technology can monitor for sp...

Explore Axis Intelligent Surveillance at Fort Lauderdale
Explore Axis Intelligent Surveillance at Fort Lauderdale

Axis Communications celebrated the grand re-opening of its Axis Experience Centre (AEC) in Fort Lauderdale, Florida. 9,000 sq ft. facility With beautiful views of the water and a...

i-PRO security solutions for public safety contracts
i-PRO security solutions for public safety contracts

i-PRO Americas Inc. (formerly Panasonic Security), a global pioneer in professional security solutions for security and public safety announced that it has been awarded a new procu...

Quick poll
What's the primary benefit of integrating access control with video surveillance?