GNU social JP
  • FAQ
  • Login
GNU social JPは日本のGNU socialサーバーです。
Usage/ToS/admin/test/Pleroma FE
  • Public

    • Public
    • Network
    • Groups
    • Featured
    • Popular
    • People

Conversation

Notices

  1. Embed this notice
    BeyondMachines :verified: (beyondmachines1@infosec.exchange)'s status on Thursday, 21-Nov-2024 21:28:48 JST BeyondMachines :verified: BeyondMachines :verified:

    D-Link warns of critical flaw in end-of-life routers, tells user to replace them
    #cybersecurity #infosec #advisory #vulnerability
    https://beyondmachines.net/event_details/d-link-warns-of-critical-flaw-in-end-of-life-routers-tells-user-to-replace-them-5-y-h-8-z/gD2P6Ple2L

    In conversation about 6 months ago from infosec.exchange permalink

    Attachments

    1. Domain not in remote thumbnail source whitelist: pubcdn.beyondmachines.net
      D-Link warns of critical flaw in end-of-life routers, tells user to replace them
      from BeyondMachines
      D-Link disclosed a critical buffer overflow vulnerability allowing unauthenticated remote code execution across multiple VPN router models (including DSR-150/N, DSR-250/N, DSR-500N, and DSR-1000N), recommending complete device replacement rather than patching since all affected models are end-of-life, though they're offering a 20% discount on replacement hardware.
    • Embed this notice
      SpaceLifeForm (spacelifeform@infosec.exchange)'s status on Thursday, 21-Nov-2024 21:28:47 JST SpaceLifeForm SpaceLifeForm
      in reply to

      @beyondmachines1

      Any alternate firmware out there?

      I am not finding good results.

      In conversation about 6 months ago permalink
    • Embed this notice
      翠星石 (suiseiseki@freesoftwareextremist.com)'s status on Thursday, 21-Nov-2024 21:28:47 JST 翠星石 翠星石
      in reply to
      • SpaceLifeForm
      @SpaceLifeForm @beyondmachines1 You need to carry out a GPLv2 request with D-Link, demanding the source code of Linux, u-boot, etc, plus the installation information (i.e. information of the location of the UART header, the pinout and the baud).

      Once you have that, you submit that to the openwrt project and hopefully someone goes and does a port and upstreams the chipset support etc without adding all the proprietary software.
      In conversation about 6 months ago permalink
    • Embed this notice
      翠星石 (suiseiseki@freesoftwareextremist.com)'s status on Thursday, 21-Nov-2024 21:30:30 JST 翠星石 翠星石
      in reply to
      • 翠星石
      • SpaceLifeForm
      @SpaceLifeForm @beyondmachines1 See if you can find the booklet that came with the router or check the web interface - there should be GPLv2 request notice written there.

      If that's missing and that router runs BusyBox/Linux, D-Link has lost their license to distribute BusyBox and Linux.
      In conversation about 6 months ago permalink

Feeds

  • Activity Streams
  • RSS 2.0
  • Atom
  • Help
  • About
  • FAQ
  • TOS
  • Privacy
  • Source
  • Version
  • Contact

GNU social JP is a social network, courtesy of GNU social JP管理人. It runs on GNU social, version 2.0.2-dev, available under the GNU Affero General Public License.

Creative Commons Attribution 3.0 All GNU social JP content and data are available under the Creative Commons Attribution 3.0 license.