DSM 5.1-5021

Publish Time: 2014-12-16 00:00:00 UTC+8

Last Updated: UTC+8

Status
Resolved

Description

DSM 5.1-5021 includes the security fixes of multiple critical updates since DSM 5.1-5004 and also explicitly addresses the following security vulnerabilities:

  • One vulnerability that allows local users to initiate a denial of service by queuing the maximum number of file descriptors (CVE-2014-7824).
  • Multiple vulnerabilities that allow remote attackers to cause a denial of service (out-of-bound read, heap memory corruption, or application crash) or possibly execute arbitrary code (PHP: CVE-2014-3669, CVE-2014-3670, CVE-2014-3668, and CVE-2014-3710).

Resolution

To fix the security issues, please go to DSM > Control Panel > Update & Restore> DSM Update and install the latest updates to protect your DiskStation from malicious attacks. Completing this update will automatically restart your system.