The package ppp before version 2.4.7-7 is vulnerable to arbitrary code execution. . Arch Linux Security Advisory ASA-202003-3 ======================================== Severity: Medium Date : 2020-03-07 CVE-ID : CVE-2020-8597 Package : ppp Type : arbitrary code execution Remote : Yes Link : https://security.archlinux.org/AVG-1101 Summary ====== The package ppp before version 2.4.7-7 is vulnerable to arbitrary code execution. Resolution ========= Upgrade to 2.4.7-7. # pacman -Syu "ppp> =2.4.7-7" The problem has been fixed upstream but no release is available yet. Workaround ========= None. Description ========== A buffer overflow flaw was found in the ppp package in versions 2.4.2 through 2.4.8. The bounds check for the rhostname was improperly constructed in the EAP request and response functions which could allow a buffer overflow to occur. Data confidentiality and integrity, as well as system availability, are all at risk with this vulnerability. Impact ===== A remote unauthenticated user can crash or possibly execute code on the host by sending malicious authentication data. References ========= https://lists.debian.org/debian-lts-announce/2020/02/msg00005.html https://github.com/ppp-project/ppp/commit/8d7970b8f3db727fe798b65f3377fe6787575426 https://seclists.org/fulldisclosure/2020/Mar/6 https://security.archlinux.org/CVE-2020-8597 . Arch Linux Security Advisory ASA-202003-4 highlights a moderate severity vulnerability in libcurl that may lead to potential data exposure.. Arch Linux, ppp package, security advisory, code execution, vulnerability. . Severity: Medium. LinuxSecurity.com Team
Marcus Meissner discovered that the winbind plugin in pppd does not check whether a setuid() call has been successful when trying to drop privileges, which may fail with some PAM configurations. . - --------------------------------------------------------------------------Debian Security Advisory DSA 1106-1
A local /tmp bug in the /usr/sbin/ppp-off program was found.. A local /tmp bug in the /usr/sbin/ppp-off program was found. This bug could allow a local user to corrupt system files. A fix has been made and an updated package is now available in the -current branch. The package described below will work for users of Slackware 7.0, 7.1, and -current. ================================= ppp package updated - (n1/ppp.tgz) ================================= A local /tmp bug in the /usr/sbin/ppp-off program has been found and fixed. The new ppp.tgz package is available from: For verification purposes, we provide the following checksums: 16-bit "sum" checksum: 60573 191 n1/ppp.tgz 128-bit MD5 message digest: c879dd34413a5d9cf367640206492852 n1/ppp.tgz INSTALLATION INSTRUCTIONS FOR THE ppp.tgz PACKAGE: -------------------------------------------------- Disable any running pppd processes: # killall pppd Then issue this command: # upgradepkg ppp.tgz Remember, it's also a good idea to backup configuration files before upgrading packages. - Slackware Linux Security Team The Slackware Linux Project . A local /tmp bug in the /usr/sbin/ppp-off program was found. This bug could allow a local user to co. local, /usr/sbin/ppp-off, program, found, /usr/sbin/ppp-o. . Severity: Critical. LinuxSecurity.com Team
Get the latest Linux and open source security news straight to your inbox.