Orbi WiFi 7 RBE973
Reply

R9000 Firmware V1.0.2.32 release note details about "security updates"

dave4925
Aspirant

R9000 Firmware V1.0.2.32 release note details about "security updates"

The release notes to V1.0.2.32 just say "security updates"

I was wanting to know which security issues were updated in this version?

 

I am very concerned about whether or not this patches the sambacry vulnerability that is in the wild now.

 

Thanks!

Model: R9000|Nighthawk X10 AD7200 Smart WiFi Router
Message 1 of 4

Accepted Solutions
schumaku
Guru

Re: R9000 Firmware V1.0.2.32 release note details about "security updates"


@dave4925 wrote:

Do you know what version of SAMBA the R9000 uses in its latest firmware, and if it has been tested against the sambacry exploit?

 


Plese re-read my reply above.

@dave4925 wrote:

Also, a verbose security update list would be great.

Agree. 

 

View solution in original post

Message 4 of 4

All Replies
schumaku
Guru

Re: R9000 Firmware V1.0.2.32 release note details about "security updates"


@dave4925 wrote:

I am very concerned about whether or not this patches the sambacry vulnerability that is in the wild now.


The R9000 V1.0.2.32 does run SAMBA Version 3.0.24 (I'm not kidding - with plenty of other probably less critical vulnerabilities and non-required restrictions in the year 2017...) like many other Netgear Nighthawk and other Netgear routers. As per the CVE-2017-7494 , SAMBA versions before v3.5.0 are said not to be vulnerable. The Netgear implemented SAMBA version is decades old, not just seven years as when this bug was introduced...

 

Don't worry - there are many more security issues neither patched nor the configurations changed. I strongly advice not to expose the R9000 (or any other Netgear router) for remote management, for ReadySHARE by http, https, or ftp th the Internet. 

Message 2 of 4
dave4925
Aspirant

Re: R9000 Firmware V1.0.2.32 release note details about "security updates"

Do you know what version of SAMBA the R9000 uses in its latest firmware, and if it has been tested against the sambacry exploit?

Also, a verbose security update list would be great.

 

Thanks!

Model: R9000|Nighthawk X10 AD7200 Smart WiFi Router
Message 3 of 4
schumaku
Guru

Re: R9000 Firmware V1.0.2.32 release note details about "security updates"


@dave4925 wrote:

Do you know what version of SAMBA the R9000 uses in its latest firmware, and if it has been tested against the sambacry exploit?

 


Plese re-read my reply above.

@dave4925 wrote:

Also, a verbose security update list would be great.

Agree. 

 

Message 4 of 4
Top Contributors
Discussion stats
  • 3 replies
  • 3857 views
  • 2 kudos
  • 2 in conversation
Announcements

Orbi WiFi 7