Forum Discussion

5 Replies

Replies have been turned off for this discussion
  • Bruce's avatar
    Bruce
    Honored Contributor III

    Kind of a throwaway line at the bottom.

    Comcast stated: "...we do not believe this issue was ever used against any Comcast customer."

    How would Comcast know?

    As per the article, the fix for the XR11 is patch v1.1.4.0.  When I look under the Remote Settings of Contour, my XR11 firmware is v1.1.4.1.  I wonder if there is a difference?

    If you're concerned, disable the Voice Control feature under Remote Settings until Cox either provides a status or resolves the vulnerability.

    "Functionality is the enemy of security."

    • PJS2's avatar
      PJS2
      Contributor

      Version 1.1.4.1 should be newer than .0 and include everything that .0 did. 

      • Bruce's avatar
        Bruce
        Honored Contributor III

        I'd assume but if Cox codes their own firmware for Contour, it may be different.  Besides, this firmware, 1.1.4.1, seems to have been the only version since I set up this box over a year ago.  This vulnerability was published 2 days ago.

  • ChrisB's avatar
    ChrisB
    Community Manager

    Hello all, I have confirmed that our current firmware is not susceptible to this vulnerability.