U.S. flag   An official website of the United States government
Dot gov

Official websites use .gov
A .gov website belongs to an official government organization in the United States.

Https

Secure .gov websites use HTTPS
A lock (Dot gov) or https:// means you've safely connected to the .gov website. Share sensitive information only on official, secure websites.

Vulnerability Change Records for CVE-2021-34344

Change History

CVE Modified by QNAP Systems, Inc. 9/10/2021 1:15:17 AM

Action Type Old Value New Value
Changed Description
A stack buffer overflow vulnerability has been reported to affect QNAP device running QUSBCam2. If exploited, this vulnerability allows attackers to execute arbitrary code.
We have already fixed this vulnerability in the following versions of QUSBCam2:
QTS 4.5.4: QUSBCam2 1.1.4 ( 2021/07/30 ) and later
QTS 5.0: QUSBCam2 2.0.1 ( 2021/08/03 ) and later
QTS 4.3.6: QUSBCam2 1.1.4 ( 2021/07/30 ) and later
QTS 4.3.3: QUSBCam2 1.1.4 ( 2021/08/06 ) and later
QuTS hero 4.5.3: QUSBCam2 1.1.4 ( 2021/07/30 ) and later
A stack buffer overflow vulnerability has been reported to affect QNAP device running QUSBCam2. If exploited, this vulnerability allows attackers to execute arbitrary code. We have already fixed this vulnerability in the following versions of QUSBCam2: QTS 4.5.4: QUSBCam2 1.1.4 ( 2021/07/30 ) and later QTS 5.0: QUSBCam2 2.0.1 ( 2021/08/03 ) and later QTS 4.3.6: QUSBCam2 1.1.4 ( 2021/07/30 ) and later QTS 4.3.3: QUSBCam2 1.1.4 ( 2021/08/06 ) and later QuTS hero 4.5.3: QUSBCam2 1.1.4 ( 2021/07/30 ) and later