CVE-2024-53695

A buffer overflow vulnerability has been reported to affect HBS 3 Hybrid Backup Sync. If exploited, the vulnerability could allow remote attackers to modify memory or crash processes. We have already fixed the vulnerability in the following version: HBS 3 Hybrid Backup Sync 25.1.4.952 and later
References
Configurations

Configuration 1 (hide)

cpe:2.3:a:qnap:hybrid_backup_sync:*:*:*:*:*:*:*:*

History

16 Jan 2026, 18:15

Type Values Removed Values Added
Summary
  • (es) Se ha informado de una vulnerabilidad de desbordamiento de búfer que afecta a HBS 3 Hybrid Backup Sync. Si se explota, la vulnerabilidad podría permitir a atacantes remotos modificar la memoria o bloquear procesos. Ya hemos corregido la vulnerabilidad en la siguiente versión: HBS 3 Hybrid Backup Sync 25.1.4.952 y posteriores
CPE cpe:2.3:a:qnap:hybrid_backup_sync:*:*:*:*:*:*:*:*
CVSS v2 : unknown
v3 : unknown
v2 : unknown
v3 : 9.1
References () https://www.qnap.com/en/security-advisory/qsa-25-06 - () https://www.qnap.com/en/security-advisory/qsa-25-06 - Vendor Advisory
First Time Qnap hybrid Backup Sync
Qnap

07 Mar 2025, 17:15

Type Values Removed Values Added
New CVE

Information

Published : 2025-03-07 17:15

Updated : 2026-01-16 18:15


NVD link : CVE-2024-53695

Mitre link : CVE-2024-53695

CVE.ORG link : CVE-2024-53695


JSON object : View

Products Affected

qnap

  • hybrid_backup_sync
CWE
CWE-120

Buffer Copy without Checking Size of Input ('Classic Buffer Overflow')

CWE-121

Stack-based Buffer Overflow