Wednesday, September 22, 2021

Netgear Router Vulnerability

 Multiple Netgear routers have a high severity (8.1) remote code execution vulnerability that could be exploited by remote attackers to take control if the system.

 The vulnerability is in the Circle component that updates parental control features - even if that feature is not enabled.

 Recommendation is to update the firmware. Updating infrastructure firmware is good security practice.

 The affected Netgear models:

  • R6400v2 (fixed in firmware version 1.0.4.120)
  • R6700 (fixed in firmware version 1.0.2.26)
  • R6700v3 (fixed in firmware version 1.0.4.120)
  • R6900 (fixed in firmware version 1.0.2.26)
  • R6900P (fixed in firmware version 3.3.142_HOTFIX)
  • R7000 (fixed in firmware version 1.0.11.128)
  • R7000P (fixed in firmware version 1.3.3.142_HOTFIX)
  • R7850 (fixed in firmware version 1.0.5.76)
  • R7900 (fixed in firmware version 1.0.4.46)
  • R8000 (fixed in firmware version 1.0.4.76)
  • RS400 (fixed in firmware version 1.5.1.80)


Monday, September 13, 2021

iOS 14.8 and iPadOS 14.8 emergency update today 13-September

 Apple has released updates to iOS and iPadOS today, September 13, 2021
 The emergency update, on iOS 15 release eve, addresses the zero-click vulnerability used in the Pegasus spyware in news recently.
 Be warned - no beta testing was done for this release.
 One of our phones took several attempts to apply this update.

 Later today, Big Sur 11.6 Update.

Now, Update 12.5.4 for older iPhones and iPads

Wednesday, September 1, 2021

Chrome browser update

 Google Chrome is up to date

Version 93.0.4577.63 (Official Build) (64-bit)

Several SERIOUS security fixes 
and
some new functionality

Updates available for most platforms: Windows, macOS, Andriod, iOS, Linux, etc.