NETGEAR is aware of a growing number of phone and online scams. To learn how to stay safe click here.

pihrm's avatar
pihrm
Guide
Feb 22, 2023
Status:
New Idea

upgrade lighttpd to 1.4.67 or newer in next firmware update

In firmware version 4.6.14.3, lighttpd is at version 1.4.58. Numerous security vulnerabilities exist in lighttpd 1.4.58:

https://www.cvedetails.com/vulnerability-list/vendor_id-2713/Lighttpd.html 

 

Two of the more serious vulnerabilities are:

https://www.cvedetails.com/cve/CVE-2022-30780/

https://www.cvedetails.com/cve/CVE-2022-41556/ 

 

And for CVE-2022-41556, it's quite possible my RBR750 has been impacted for quite some time.

 

Please upgrade lighttpd to 1.4.67 or newer in the next firmware release!!!

No CommentsBe the first to comment