Search:  

 
 
   All ForumsHot TopicsGallery






how-to block ads


 
Forums » Equipment Support » Hardware By Brand » D-Link » Remotely Exploitable Vulnerability In All D-Link Gateways
Search Topic:
Share Topic:
RSS topic:
toggle:
flat / full
normal / watch
Posting:
Post a:
Post a:
Help Configuring My Gigabit Network Adapter »
« How to change firewall settings?  
AuthorAll Replies

joe_dude

join:2005-06-17
Winnipeg, MB

reply to Hofbrau
Re: Remotely Exploitable Vulnerability In All D-Link Gateways

Woah! How did this fly under the radar?!?

So would someone from D-Link please list the affected gateway/routers!!!!!

Looking at the description of the new DI-604 firmware, it's a fix for a DoS attack? I thought it was more serious than that....


Hofbrau

@rr.com

"So would someone from D-Link please list the affected gateway/routers!!!!!"

Notice the supposed D-Link tech didn't list the affected gateway models - only the ones (3..with no qualifications for different revisions for the same model such as the 604) with supposedly "patched" firmware updates.

Considering the lack of communication from D-Link preceding this posting, and from D-Link within this thread, you must assume that every current/recent gateway model is vulnerable.

"Looking at the description of the new DI-604 firmware, it's a fix for a DoS attack? I thought it was more serious than that...."

D-Link is minimizing the extent and nature of the remotely exploitable vulnerability that allows for complete system subjugation of every gateway model they produce/produced?

This would be the same flaw that they have yet to officially and publicly acknowledge of their own accord in any significant and specific and detailed manner, right? (That might be considered minimization as well..perhaps?)

They are clearly taking this seriously, what with the way they have considerately allowed their users to continue to use their extremely vulnerable insecure gateway products none-the-wiser, with no workarounds or mitigation steps being provided or offered.

You can see how seriously they are taking this what with the way they offered a patched firmware for Revision E 604s, but not for any of the earlier revisions. Hey, I know, only the E revision of the 604 is affected, you can read the details about it in their security advisory...oops...what advisory? Never mind.

Nothing like issuing a patch for some revisions of some gateway models for a security vulnerability that exists (apparently) in all revisions of all gateway models, without a security advisory to accompany it to explain the details.

Who says they dont care about or take seriously security?

Surprised?

I know I am.

Cogitate,
Hofbrau
Forums » Equipment Support » Hardware By Brand » D-LinkHelp Configuring My Gigabit Network Adapter »
« How to change firewall settings?  


Sunday, 29-Nov 05:58:25 Terms of Use | Privacy Policy | Hosting by www.nac.net - DSL,Hosting & Co-lo | feedback | contact
over 10 years online! © 1999-2009 dslreports.com.
page compression OFF
Most commented news this week
· [122] Time Warner Cable Fires Broadside At Broadcasters
· [112] New AT&T Ad Campaign Hits Back At Verizon
· [96] Apple Joins AT&T Verizon Snark Fest
· [87] New Bill Takes Aim At Higher Verizon ETFs
· [80] TiVo Sees Record Customer Losses
· [73] Weekend Open Thread
· [72] Verizon CEO: Hulu Will Be Dead Soon
· [69] In-Flight Internet Headed For Bumpy Landing?
· [62] Thanksgiving Open Thread
· [40] EFF Wages War On Fine Print
Most people now reading
· Windows 7 boot manager editing questions [Microsoft Help]
· ToC 4th boss - Preliminary Strategy for Twin Valkyr [World of Warcraft]
· [FREEZING] Spybost S&D Updater [Security]
· 3.x Feral Druid - Bear Tanking Guide [World of Warcraft]
· Microsoft Security Bulletin Summary for October 13, 2009 [Security]
· Child Porn Laws - The Traci Lords Argument [Canadian Chat]
· Shareport problem on DIR-655 [D-Link]
· [Newsgroups] Newzleech down? [Filesharing Software]
· [Tomato] WRT54-GL LCP appears to be disconnected - VOIP with Int [Linksys]