LinuxQuestions.org
Latest LQ Deal: Latest LQ Deals
Home Forums Tutorials Articles Register
Go Back   LinuxQuestions.org > Forums > Linux Forums > Linux - Security
User Name
Password
Linux - Security This forum is for all security related questions.
Questions, tips, system compromises, firewalls, etc. are all included here.

Notices


Reply
  Search this Thread
Old 03-03-2020, 10:40 AM   #1
beziabdelkarim
LQ Newbie
 
Registered: Nov 2019
Posts: 5

Rep: Reputation: Disabled
[pppd] how to check the security issue CVE-2020-8597


Hello,

I need to check the following security issue on my ppp client machine (linux)

-eap.c in pppd in ppp 2.4.2 through 2.4.8 has an rhostname buffer overflow in the eap_request and eap_response functions.

I'm using pppd 2.4.5.

Unfortunately no useful details is available on forums regarding this.

The idea is to have a reproduction scenario (test, tool, commands, setup) to reproduce this problem.

If reproduced, I'llupgrade my pppd daemon to the latest version (containing the fix) and redo the same check to confirm.

Any useful information is welcome.

THANKS FOR YOUR HELP
 
Old 03-03-2020, 10:48 AM   #2
uteck
Senior Member
 
Registered: Oct 2003
Location: Elgin,IL,USA
Distribution: Ubuntu based stuff for the most part
Posts: 1,177

Rep: Reputation: 501Reputation: 501Reputation: 501Reputation: 501Reputation: 501Reputation: 501
Might help to know what Linux distro you are using. Ideally the distro will push out an update for you to download, or you can check if they patched the 2.4.5 version with the fix.
 
Old 03-03-2020, 10:54 AM   #3
beziabdelkarim
LQ Newbie
 
Registered: Nov 2019
Posts: 5

Original Poster
Rep: Reputation: Disabled
Quote:
Originally Posted by uteck View Post
Might help to know what Linux distro you are using. Ideally the distro will push out an update for you to download, or you can check if they patched the 2.4.5 version with the fix.

I'm using linux special edition for embedded device (kernel 4.1), pppd daemon 4.5
 
Old 03-03-2020, 04:47 PM   #4
uteck
Senior Member
 
Registered: Oct 2003
Location: Elgin,IL,USA
Distribution: Ubuntu based stuff for the most part
Posts: 1,177

Rep: Reputation: 501Reputation: 501Reputation: 501Reputation: 501Reputation: 501Reputation: 501
Looks like it is just changing a line in the source; https://github.com/paulusmack/ppp/co...77fe6787575426
You could make the change in source and recompile, but coming up with a test would, as you noted, need more info about the problem.
 
Old 03-04-2020, 03:18 AM   #5
beziabdelkarim
LQ Newbie
 
Registered: Nov 2019
Posts: 5

Original Poster
Rep: Reputation: Disabled
Thanks for the information.
I rather need a test scenario (setup client/server, sending packets) in order to reproduce the issue
The goal is to have a reproduction setup : packets sto sent to pppd in order to get this problem
any help is welcome
 
Old 03-08-2020, 09:48 AM   #6
allend
LQ 5k Club
 
Registered: Oct 2003
Location: Melbourne
Distribution: Slackware64-15.0
Posts: 6,377

Rep: Reputation: 2757Reputation: 2757Reputation: 2757Reputation: 2757Reputation: 2757Reputation: 2757Reputation: 2757Reputation: 2757Reputation: 2757Reputation: 2757Reputation: 2757
Given CVE-2020-8597 then has a FULLDISC link leading to further bug simulation information.
The last also states:
Quote:
You still have to beat the Stack Canaries, so crash is the most possible.
LQ is not for developing exploits; there are other places on the internet.
 
  


Reply

Tags
attack, buffer, ppp, vulnerability



Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are On
[IMG] code is Off
HTML code is Off



Similar Threads
Thread Thread Starter Forum Replies Last Post
Bash "shellshock" CVE-2014-6271 CVE-2014-7169 - Instructions to Update Bash in LMDE Fix ShellShock eric.r.turner Linux Mint 12 09-20-2021 10:54 AM
Meltdown/Spectre CVE-2017-5754, CVE-2017-5753, CVE-2017-5715 cynwulf LQ Suggestions & Feedback 1 01-05-2018 09:42 AM
[SOLVED] Bash "shellshock" CVE-2014-6271 CVE-2014-7169 - vulnerability in bash charly78 Debian 21 10-02-2014 08:31 AM
[SECURITY NOTICE!] Bash 4.3 (shellshock, CVE-2014-6271 and CVE-2014-7169) ReaperX7 Linux From Scratch 2 09-28-2014 06:47 AM

LinuxQuestions.org > Forums > Linux Forums > Linux - Security

All times are GMT -5. The time now is 06:06 AM.

Main Menu
Advertisement
My LQ
Write for LQ
LinuxQuestions.org is looking for people interested in writing Editorials, Articles, Reviews, and more. If you'd like to contribute content, let us know.
Main Menu
Syndicate
RSS1  Latest Threads
RSS1  LQ News
Twitter: @linuxquestions
Open Source Consulting | Domain Registration