The Inquirer-Home

Linksys routers can't be sniffed at any more

Firmware upgrade for all
Tue Jun 08 2004, 08:00
PERHAPS HURRIED by our recent report about the BOOTP based exploit and sniffing vulnerability in popular Linksys routers like the BEFSR11 and BEFSR41, the firm has released firmware version 1.45.11, dated June 4, that specifically mentions closing the BOOTP and memory leak hole which allowed remote sniffing of TCP/IP traffic passing through the devices.

Here is a quick list of fixes, straight from the release notes:

  • Fixed CGI string attacks issue
  • Fixed UPnP on Windows XP SP2 issue
  • Fixed One way audio issue
  • Fixed NAT-T issue for some VPN connection
  • Fixed DHCP server revision, fill the siaddr to the server address
  • Fixed DHCP (BOOTP) vulnerability issue
  • Added Filter IDENT(port 113) to appear stealth when scanned
  • Added DHCP option 55 support
  • Fixed buffer leakage bug
  • Modified TCP Support RFC 3360 standard
  • Modified PPPoE/L2TP/PPTP fragmentation supports fragmenting 1 packet into more than 3.
  • Modified MTU/MRU function for better handling [of what?]

Owners of old revisions of the BEFSR41, BEFSR11 and BEFSRU31 routers, those made before the Cisco acquisition, will be happy to learn that this firmware was released for "Version 1" and "Version 2" hardware.

Find the firmware for version 1 and v2 hardware HERE. Version 3 routers that are not already patched can be upgraded by following THIS LINK. How to tell what router you have?, according to the TECH NOTE acknowledging the vulnerability dated June 3 "You can verify your router version by looking underneath the router next to the model number (no version number means Version 1)".

The tech note shows a creation date of June 3 µ

L'INQS
Fixed firmware (1.05.00) for "version 3" hardware only.
MAY 22, 2004: Hole and exploit disclosure. Entry at OSVDB, an open source database of system vulnerabilities.
JUNE 2, 2004: we report v1 and v2 routers' firmware hasn't been updated by Linksys in about a year.
JUNE 3, 2003: Tech note acknowledging the bug and promising a fix
June 7: Fixed firmware (1.45.11) for V1 and V2 hardware

Share this:

Comments

There are no comments submitted yet. Do you have an interesting opinion? Then be the first to post a comment.

aboutus
Advertisement
Subscribe to INQ newsletters
Advertisement
INQ Poll

Authorities in several countries raided Megaupload recently, shut down all of its services, seized hundreds of servers and arrested several of its executives on criminal charges.

Do you think the move was justified?