 BlackEyed
join:2004-09-04 Slovenia
| reply to Flogator Re: [wired] Recap: BEFSX41 Stable Firmware
Indeed 1.45.7 is the most stable. It works really great for me.. however i found on www thats this firmware is vulnerable check: »www3.ca.com/securityadvisor/vuln···ID=28398
Flogator any comments on this?  |
|
  Flogator Premium,MVM join:2003-01-19 Cantley, QC
·Acanac
·Videotron
| Please note the following details:
First, WE (at BBR/DSLR) ARE the only fellows outside Linksys using BEFSX41 firmware 1.45.7. I find it hard to believe that an official organization would do any testing on beta material that you can not even find on Linksys web site.
Secondly, note that all the firmware version mentioned in there are 1.45.7 independently of which router model it is running on. Since when is Linksys sharp enough to use the same version across different model? It never happened on so many broaden range of models. Remember that BEFSX41 firmware 1.45.7 is way different than BEFSR41 firmware 1.45.7 (and please don't try to flash the wrong firmware on the wrong model). Quick observation, you can find BEFSR41 firmware 1.45.7 on Linksys web site. In other words, I think there is a typo in the article you have posted.
Finally, my Linksys contact has told me few months ago that this vulnerability is present in firmware 1.45.3 but is apparently fixed in 1.45.7. This still has to be confirmed but given the above two observation, it seems that the probabilities are good . |
|
 BlackEyed
join:2004-09-04 Slovenia | you are right.. that this was strange to me too that all firmware where v1.45.7 independently of router model. |
|
 Eko Premium join:2004-05-04 Slovenia
| reply to BlackEyed If anybody will risk and try this »www.hackerscenter.com/ARCHIVE/vi···visories we will know for good. I don't have the "reset button on the front of the router"????? AliM |
|
  Jan Janowski
join:2000-06-18 Skokie, IL | reply to BlackEyed One thing strikes me as odd at that site... They say V1.45.7 firmware for BEFSRU31 has the flaw....
To my knowledge, there has been NO V1.45.7 for BEFSRU31 -- Looking for 1939 Indian Motocycle |
|
 ElJay
join:2004-03-17
·Great Works Internet
| reply to BlackEyed said by BlackEyed : Indeed 1.45.7 is the most stable. It works really great for me.. however i found on www thats this firmware is vulnerable check: »www3.ca.com/securityadvisor/vuln···ID=28398
If you change the IP address of the router from the default 192.168.1.1 address, the chances of getting struck by this vulnerability are very minute. Basically this vulnerability requires access to your local network or for you to click on a nasty link from an attacker that knows your router's local IP address. |
|