ASUS ZenWiFi XT9
BIOS & FIRMWARE
- Driver & Tools
- BIOS & FIRMWARE
1. Strengthened input validation and data processing workflows to further protect information security.
2. Enhanced AiCloud password protection mechanisms, safeguarding against unauthorized access attempts.
3. Enhanced device security through improved buffer handling in connection features.
4. Refined data handling processes, ensuring secure and accurate information management.
5. Enhanced file access control mechanisms, promoting a more secure operating environment.
6. Strengthened certificate protection, providing enhanced data security.
Please unzip the firmware file, and then verify the checksum.
SHA256: c3d423d0f38742d9301ca28a30ca9c6185437e5b74d51456bc05f9e1e50fbf75
1. Optimized memory management mechanisms, improving system efficiency and stability.
2. Strengthened input validation and data processing workflows, further protecting your information security.
3. Improved web rendering engine, enhancing browsing experience and security.
4. Enhanced security of system command processing to guard against potential malicious operations.
5. Perfected JavaScript-related security mechanisms, offering a more secure web interaction environment.
Please unzip the firmware file, and then verify the checksum.
SHA256: 49f9b42fd095179d50d5f699623edae9014fd140fa41425529fdcaad86b55e84
Bug Fixes and Enhancements:
- Fixed IP display list issue on networkmap.
- Fixed a GUI bug for WireGuard client profile name.
- Fixed WAN connection issues.
- Resolved an issue that caused hostname errors in the DDNS service.
- Resolved OpenVPN server TAP mode issue.
- Added MTU setting for WireGuard client.
- Ensured consistent display of client status on the WireGuard server.
- Enhanced system stability when accessing the WireGuard server with DMZ enabled.
- Improved stability when enabling or disabling the WireGuard server.
- Optimized memory utilization and fixed an occasional server error when registering DDNS with an app.
- Corrected a bug encountered when adding a rule to the network services filter.
- Fixed AiMesh node under Ethernet backhaul issues.
- Fixed GUI bugs while searching for AiMesh Node.
- Fixed USB function related issues.
- Fixed a GUI bug that occurred when adding port range rules in the Network Service Filter.
Security Fixes:
- Fixed OpenSSL vulnerabilities.
- Fixed command injection vulnerabilities.
- Upgraded to the latest dropbear version.
- Fixed a stack overflow vulnerability.
- Fixed vulnerability in command injection after authentication.
- Fixed XSS potentially via malformed hostname in DHCP request.
Please unzip the firmware file, and then verify the checksum.
SHA256: 9f655736c238d113270a57f0a88cc1cd49210c359935dea2d97f91bfa76bf0ba
Bug fixes and functionality modifications:
-The ARP response issue has been resolved, along with the connection issue between the router and the ROG Phone 6 and 7.
-Resolved the issue where the USB path is not displayed on the Media Server page in the AiMesh node
-Resolved the Download Master login issue. Please click the update link in the USB Application to update it.
Security updates:
-Fixed the cfg server vulnerability. Thanks to Swing and Wang Duo from Chaitin Security Research Lab.
-Fixed the vulnerability in the logmessage function CVE-2023-35086/ CVE-2023-35087. Thanks to Swing and Wang Duo from Chaitin Security Research Lab C0ss4ck from Bytedance Wuheng Lab, Feixincheng from X1cT34m.
Please unzip the firmware file, and then verify the checksum.
SHA256: 111bbc4f5d9dd5eefd662e3fc675f80d84781d60e5a8827a677e0b61878223a9
New features:
-Built-in Surfshark in VPN Fusion allows you to surf the internet anonymously and securely from anywhere by encrypting connections. Please refer to https://asus.click/SurfsharkVPN
-iPhone/Android USB auto backup WAN allows you to connect your phone to the router’s USB port and use it as an internet source. Please refer to https://asus.click/AutobackupWAN
-DDNS transfer allows you to transfer your ASUS DDNS hostname from your original router to the new one. Please refer to https://asus.click/ASUSDDNS
Bug fixes and functionality modifications:
-Resolved the issue with login and password changes.
-Resolved the IPSec VPN connection issues.
-Resolved the Instant Guard connection issues.
-Fixed the AiCloud login issue after unplugging and plugging the HDD into the USB port.
-Fixed the issue where Traffic Analyzer sometimes couldn't record data.
-Fixed the time display issue for the preferred upgrade time in the Auto Firmware Upgrade function.
-Fine-tuned the description for port status.
-Enabled DynDNS and No-IP DDNS to use IPv6.
-Fixed AiMesh preferred AP identification in site survey results.
-Updated timezone list for Greenland, Mexico, and Iran.
-Modified the USB application option text in dual WAN.
-Allowed WireGuard Server clients to access the Samba server.
-Fixed memory leak issue.
-Enabled the failback function when using the iOS/Android USB backup WAN.
Security updates:
-Enabled and supported ECDSA certificates for Let's Encrypt.
-Enhanced protection for credentials.
-Enhanced protection for OTA firmware updates.
-Fixed DoS vulnerabilities in firewall configuration pages. Thanks to Jinghe Gao's contribution.
-Fixed DoS vulerabilities in httpd. Thanks to Howard McGreehan.
-Fixed information disclosure vulnerability. Thanks to Junxu (Hillstone Network Security Research Institute) contribution.
-Fixed CVE-2023-28702 and CVE-2023-28703. Thanks to Xingyu Xu(@tmotfl) contribution.
-Fixed null pointer dereference vulnerabilities. Thanks to Chengfeng Ye, Prism Research Group - cse hkust contribution.
Please unzip the firmware file first then check the MD5 code.
MD5: 52850fcc6e5894505df5aeca8c6d7055
1.Fixed CVE-2022-46871
2.Fixed Client DOM Stored XSS.
3.Improved AiMesh backhaul stability.
4.Fixed AiMesh topology UI bugs.
5.Fixed the reboot issue when assigning specific clients in VPN fusion.
6.Fixed the VPN fusion bug when importing the Surfshark WireGuard conf file.
7.Fixed network map bugs.
Please unzip the firmware file first then check the MD5 code.
MD5: e48056f7cd316c8bfb2c2b18f86835dd
1. Improved system stability.
2. Fixed the IPsec VPN compatibility issue with Win10.
3. Fixed the VPN fusion user interface issues under the HTTPS connection.
4. Fixed Client DOM Stored XSS vulnerability.
5. Improved Wireguard performance.
Please unzip the firmware file first then check the MD5 code.
MD5: a6b98950cb2985154fbc69ff4421fd04
1. Fixed IPTV compatibility issue with Movistar. Thanks to Sergio de Luz from RedesZone.net.
2. Fixed VPN fusion, AiMesh, and Network map GUI bugs.
3. Fixed WAN compatibility issue with Starlink router.
4. Fixed miniupnpc vulnerabilities, CVE-2015-603, CVE-2017-1000494
5. Fixed IPSec server vulnerability, CVE-2022-40617
6. Improved connection speed with Verizon FIOS.
Please unzip the firmware file first then check the MD5 code.
MD5: eea8f89d716302b89b857211e3725158
1. Fixed AiMesh prelink issue.
2. Improved system stability.
3. Fixed 2.5GbE port compatibility issue.
Please unzip the firmware file first then check the MD5 code.
MD5: 96e8269566a765a1f8df7563532107b6
1. Fixed Samba file system clutter bug.
2. Improved AiMesh system backhaul TXBF speed.
3. Fixed AiProtection bug.
4. Security
- Fixed HTTP response splitting vulnerability. Thanks to Efstratios Chatzoglou, University of the Aegean.
- Fixed status page HTML vulnerability. Thanks to David Ward.
- Fixed CVE-2018-1160. Thanks to Steven Sroba.
- Fixed cfg_server security issue.
Please unzip the firmware file first then check the MD5 code.
MD5: b98f5339e91b1a457ab7ac9394fcb3a8
1. Improved system stability.
2. Supported WireGuard server/client.
3. Suppored VPN fusion. It can easily achieve VPN connection to network devices like Smart TV, Game console and without installing the VPN client software.
4. Supported new device connection notification.
5. Supported DNS-over-TLS
6. Supported connection diagnostic on ASUS router app.
7. Upgraded parental control and added reward, new scheduler, safe browsing.
8. Improved Channel Availability Check process.
9. Improved AiMesh stability.
10. Fixed GUI bugs.
Please unzip the firmware file first then check the MD5 code.
MD5: d3806683fbc56a0e3b122c9f81e03b94