惯性聚合 高效追踪和阅读你感兴趣的博客、新闻、科技资讯
阅读原文 在惯性聚合中打开

推荐订阅源

D
DataBreaches.Net
B
Blog
博客园_首页
C
Check Point Blog
Microsoft Security Blog
Microsoft Security Blog
MyScale Blog
MyScale Blog
P
Proofpoint News Feed
Engineering at Meta
Engineering at Meta
钛媒体:引领未来商业与生活新知
钛媒体:引领未来商业与生活新知
B
Blog RSS Feed
M
MIT News - Artificial intelligence
freeCodeCamp Programming Tutorials: Python, JavaScript, Git & More
WordPress大学
WordPress大学
宝玉的分享
宝玉的分享
OSCHINA 社区最新新闻
OSCHINA 社区最新新闻
The Cloudflare Blog
量子位
V
V2EX
Y
Y Combinator Blog
Hugging Face - Blog
Hugging Face - Blog
Martin Fowler
Martin Fowler
Recent Announcements
Recent Announcements
I
InfoQ
博客园 - 【当耐特】

StorageNewsletter

Vast Data Valued at $30 Billion as AI Drives a New Infrastructure Stack Wasabi Technologies Closes $250M Credit Facility to Expand Cloud Storage Innovation NAB Show 2026: TVC Soho Selects EditShare High-Performance NVMe Storage to Support Resolve Finishing Workflows KIOXIA Unveils Value-Oriented QLC-based EG7 Series SSDs for PC OEMs NinjaOne Unified Backup Surpasses Fifteen Thousand Customers Portworx by Everpure is Redefining Modern Virtualization for Customers with Proven, Enterprise-Ready Solutions Peer Software Strengthens Global Partner Program to Unify Fragmented File Environments for the AI Era NetApp Collaborates with Google Cloud to Power Data Infrastructure for Distributed Cloud Sidus Space Expands Existing Agreement with Lonestar Data Holdings, Inc. to Support Additional StarVault Orbital Data Storage Payload From SNIA: SCSI Continues to Innovate Data Storage with SBC-5 Microsoft Technology Licensing Assigned Patent Linux Kernel 7.0 is Out NAB Show 2026: ATTO Technology Ignites Next Era of Media Connectivity NAB Show 2026: Promise Technology to Showcase Integrated Storage Plug-in for Video and Image Creative Workflows NAB Show 2026: EditShare Advances Analytical AI and NVMe Performance for Modern Broadcast and Post NAB Show 2026: Elements Introduces GRID, a New Node-Based Scale-Out NAS Platform NAB Show 2026: MASV Expands Global Partner Ecosystem to Accelerate End-to-End Media Workflows NAB Show 2026: UnifyDrive to Showcase Full NAS Lineup NAB Show 2026: Strada Releases Easiest Remote Editing Platform on the Market Synology: Three Security Advisories on Resolved Vulnerabilities Mastercard International Assigned Patent NAB Show 2026: Promise Technology to Unveil AI-Optimized Storage Solutions NAB Show 2026: QNAP Releases HDP Recovery Media Creator: Building Windows DR Media in USB and ISO Formats NAB Show 2026: SNS Unveils Three New Products, Expanded Ecosystem NAB Show 2026: Symply Unveils Centara Platform, World’s First Quad-Interface LTO with Thunderbolt 5, and Spark One Portable NVMe NAB Show 2026: Other World Computing Launches OWC Express 4M2 Ultra Thunderbolt 5 Four-Slot NVMe M.2 SSD Enclosure Panmnesia to Mass-Produce PCIe 6.4-CXL 3.2 Fusion Switch CIQ Delivers the First Enterprise Linux Compliance Platform for Federal Cryptographic Validation and Post-Quantum Readiness Adata Launches Urban Tapsafe Up to 2TB USB 3.2 Gen2 External SSD Raidon Technology Introduces 4-Bay STARDOM SR4-BA32 20Gb/s USB-C RAID-5 Desktop Storage System
QNAP Security Advisory Bulletin ID: QSA-26-16
Philippe Nicolas · 2026-06-22 · via StorageNewsletter

RAIDON

Affected products: QTS on specific QNAP ARM64 NAS models running Kernel 5.10

This is a Press Release edited by StorageNewsletter.com on June 22, 2026 at 2:00 pm

QNAP Systems, Inc. has issued a security advisory regarding a vulnerability that could affect specific versions of its products. Use the following information and recommendations to mitigate exposure while official security updates are being prepared.

This advisory includes the following:

Local Privilege Escalation Vulnerability in Linux Kernel (Copy Fail)

Security ID: QSA-26-16
Release date: May 2, 2026
CVE identifier: CVE-2026-31431
Severity: Moderate
Status: Investigating
Affected products: QTS on specific QNAP ARM64 NAS models running Kernel 5.10

Summary
A local privilege escalation vulnerability, commonly known as ‘Copy Fail’, has been reported to affect the Linux kernel. If exploited, this vulnerability could allow an authenticated, non-administrator user with code execution capabilities to obtain elevated system privileges.

This vulnerability specifically affects systems that meet both of the following criteria:

  1. Architecture: ARM64.
  2. Kernel Version: Linux Kernel 5.10.

QNAP is currently investigating the issue and developing security updates. This advisory will be updated as soon as fixes are available.

Affected Products
The following
OS versions are affected:

  • QTS on specific QNAP ARM64 NAS models running Kernel 5.10

To verify your NAS architecture and kernel version, log in to QTS or check the technical specifications for your model here.

Products Not Affected
The following products and configurations are not impacted by this vulnerability:

  • All QNAP x86-based NAS
  • All QuTS hero NAS models
  • QNAP ARM-based NAS running QTS 4.x (these utilize older kernel versions)
  • QNAP ARM-based NAS running kernel versions other than 5.10

Recommendation
Currently, no official mitigation is available for this vulnerability. the company strongly recommend users install security updates immediately upon release.

To reduce exposure on potentially affected devices, QNAP recommends following security measures:

  • Restrict Access: Avoid granting shell access or terminal permissions to non-administrator users
  • Container Security: Limit container deployments to trusted images and restrict environment access within Container Station
  • Disable Unused Services: Disable the Web Server (default port 80) and other non-essential applications if not in use
  • Network Protection: Ensure the NAS is not directly exposed to the internet. Use QuFirewall or external network firewalls to restrict access

Share this news : Twitter Facebook Linkedin email pdf

Articles_bottom

SNL Awards_2026

AIC