NetUSB vulnerability leaves millions of connected devices open to attack

JMH

Emeritus, Contributor
Joined
Apr 2, 2012
Posts
7,197
Security researchers have published proof-of-concept code for a major router vulnerability leveraging a popular driver that could be used by hackers to compromise millions of connected devices.

The vulnerable Linux kernel driver is called NetUSB, and it allows USB devices such as printers, external hard drives and flash drives to be connected to a router or access point so as to be made available on the network. The NetUSB technology belongs to a Taiwanese firm called KCodes Technology, but each vendor has a different name for the technology. Netgear calls it ReadySHARE, while other vendors use terms such as "print sharing" or "USB share port."

The vulnerability, which can be used to deliver denial-of-service attacks and as well as run code remotely, was uncovered by SEC Consult Vulnerability Lab. The firm says it has identified 26 vendors whose products were likely affected by the router flaw.
http://www.zdnet.com/article/netusb...millions-of-connected-devices-open-to-attack/
 

Has Sysnative Forums helped you? Please consider donating to help us support the site!

Back
Top