Qnap [Firmware Release] QTS 4.3.6.0805 build 20181228

lgrnr

Chevalier Jedi
31 Juillet 2017
246
13
18
Code:
QTS 4.3.6.0805 build 20181228

[Important Notes]
- To learn more about NAS models that support the TR-004, see the Compatibility List at https://www.qnap.com/en/compatibility-expansion
- To use a TR-004 external RAID enclosure to expand NAS storage space, the enclosure must have exactly one external RAID group. Individual disks cannot be used to expand NAS space.
- To ensure system functionality, after updating QTS to 4.3.6, please also update Container Station to 1.9 in App Center before enabling QVR Pro.
- The RADVD service previously did not have an outgoing interface. Please reconfigure the RADVD service after upgrading.
- Due to security concerns, support for "Wi-Fi ad-hoc mode" has been removed.
- This QTS update changes the file system of the system partition to ext4 for ARM-based models with Annapurna Labs processors. For data security reasons, you are not able to downgrade QTS to a previous version after this update.
Affected models: TS-131P, TS-231P, TS-431P, TS-531P, TS-231+, TS-431+, TS-231P2, TS-431P2, TS-431X, TS-431X2, TS-531X, TS-831X, TS-1231XU-RP, TS-1231XU, TS-831XU-RP, TS-831XU, TS-431XU-RP, TS-431XU, TS-431XeU, and TS-1635.
- For the status of QTS updates and maintenance for your NAS model, visit https://www.qnap.com/en/product/eol.php
- When QTS 4.3.x is installed on NAS models running on 64-bit Intel and AMD processors, some applications may not be supported. To check if installed apps on your NAS are compatible with QTS 4.3.x, download the QTS 64-bit compatibility tool and install it on your current QTS build. (https://download.qnap.com/QPKG/CF64_0.1-1114.qpkg.zip)
- Below are the kernel versions for NAS models that are supported by QTS 4.3.6:
Kernel 3.10.20: TS-128, TS-228
Kernel 3.2.26: TS-x31, TS-x31U
Kernel 3.4.6: TS-x69, TS-x69U, TS-x69L
Kernel 4.2.8: all other models supported by QTS 4.3.6
- Due to the limitations of future kernel updates, QTS 4.3.6 is the final available QTS update for the following NAS models: TS-EC1679U-SAS-RP, TS-EC1679U-RP, TS-1679U-RP, TS-EC1279U-SAS-RP, TS-EC1279U-RP, TS-1279U-RP, TS-1079 Pro, TS-EC879U-RP, TS-879U-RP, TS-1270U-RP, TS-870U-RP, TS-470U-RP, TS-470U-SP, TS-879 Pro, TVS-870, TS-870 Pro, TS-870, TVS-670, TS-670 Pro, TS-670, TVS-470, TS-470 Pro, and TS-470.
- Due to the limitations of non-expandable memory capacity and 32-bit processor architecture, starting from QTS 4.3.6, the TS-128 and TS-228 no longer support Container Station and all the dependent applications, including Notes Station 3, Qcontactz, QcalAgent, AWS Greengrass, and QIoT Suite Lite.

[New feature]
Storage & Snapshot
- Added support for using a TR-004 external RAID enclosure in NAS Storage mode to expand NAS storage space.
- Added support for using a TR-004 external RAID enclosure in External Storage mode for data transfer.

[Known Issues]
- When data is being transferred to or from a QNAP external RAID enclosure, changes to the status of a degraded RAID group might not be visible immediately in Storage & Snapshots.
- When an external RAID group is in degraded mode its read/write performance will be greatly reduced.
- A failed external RAID group may have the status "Unknown" instead of "Failed".
- When creating an external RAID partition on a TR-004 external RAID enclosure, QTS may detect the new partition and show a notification message before the creation process has finished.
- When an TR-004 external RAID enclosure is connected to the NAS, changing the enclosure's RAID configuration using the hardware Mode switch might cause the status of its external RAID group or disks to change to "Error". To resolve this issue, update the enclosure firmware to the latest version.

[Fixed Issues]
- Improved the compatibility with WD 2.5-inch My Passport 4TB external drive (WDBYFT0040BBK-0A) for the following models: TS-451, TS-651, TS-851, TS-453, TS-653, TS-853, TS-453U, TS-853U, TS-1253U.
- Fixed multiple vulnerabilities in Apache HTTP Server.
- Fixed a command injection vulnerability in File Station (CVE-2018-0730).
- Fixed multiple vulnerabilities in PHP.
- Fixed a vulnerability in Samba that could be exploited to cause CNAME loops in Active Directory DNS servers (CVE-2018-14629).
- Fixed a double-free vulnerability in Samba Key Distribution Center (KDC) on an Active Directory domain controller (CVE-2018-16841).
- Fixed a null pointer dereference vulnerability in Samba Active Directory domain controller LDAP servers (CVE-2018-16851).
- Fixed a cross-site scripting vulnerability in Storage & Snapshots (CVE-2018-0713).
- After copying files or folders from an NFS shared folder to an SMB shared folder, users could not open the copied files or folders.