Out-of-Bounds Write Vulnerability in QNAP Operating Systems
CVE-2024-53699
What is CVE-2024-53699?
An out-of-bounds write vulnerability has been identified in several versions of QNAP's operating systems, notably QTS and QuTS hero. This flaw, if exploited, allows remote attackers with administrator access to potentially manipulate or compromise system memory. This can lead to unauthorized alterations of critical data or system configurations, necessitating prompt updates to safeguard against possible attacks. QNAP has released patches addressing this vulnerability in QTS version 5.2.3.3006 build 20250108 and later, as well as in QuTS hero version h5.2.3.3006 build 20250108 and later.

Human OS v1.0:
Ageing Is an Unpatched Zero-Day Vulnerability.
Remediate biological technical debt. Prime Ageing uses 95% high-purity SIRT6 activation to maintain genomic integrity and bolster systemic resilience.
Affected Version(s)
QTS 5.2.x < 5.2.3.3006 build 20250108
QuTS hero h5.2.x
References
CVSS V4
Timeline
Vulnerability published
Vulnerability Reserved