LibreTechni.ca
  • Communities
  • Create Post
  • Create Community
  • heart
    Support Lemmy
  • search
    Search
  • Login
  • Sign Up
Leaflet@lemmy.world to Linux@lemmy.mlEnglish · 8 months ago

Attacking UNIX Systems via CUPS, Part I | CUPS Remote Code Execution

www.evilsocket.net

external-link
message-square
33
fedilink
172
external-link

Attacking UNIX Systems via CUPS, Part I | CUPS Remote Code Execution

www.evilsocket.net

Leaflet@lemmy.world to Linux@lemmy.mlEnglish · 8 months ago
message-square
33
fedilink
Attacking UNIX Systems via CUPS, Part I
www.evilsocket.net
external-link
Hello friends, this is the first of two, possibly three (if and when I have time to finish the Windows research) writeups. We will start with targeting GNU/Linux systems with an RCE. As someone who’s

Red Hat’s report on vulnerability

Phoronix

  • henfredemars@infosec.pub
    link
    fedilink
    English
    arrow-up
    31
    ·
    8 months ago

    Entirely personal recommendation, take it or leave it: I’ve seen and attacked enough of this codebase to remove any CUPS service, binary and library from any of my systems and never again use a UNIX system to print. I’m also removing every zeroconf / avahi / bonjour listener. You might consider doing the same.

    Great advice. It would appear these developers don’t take security seriously.

    • masterofn001@lemmy.ca
      link
      fedilink
      arrow-up
      22
      ·
      8 months ago

      Mdns is something most people have no idea exists.

      Oh, neat, all my devices broadcast all their open ports, services, addresses, hardware and names? Cool!

      No.

      • SmoothLiquidation@lemmy.world
        link
        fedilink
        English
        arrow-up
        16
        ·
        8 months ago

        If your router/firewall is configured to let these broadcasts through you have a problem. If it is working correctly and you have an attacker on your lan? You have already lost.

        • Majestic@lemmy.ml
          link
          fedilink
          arrow-up
          14
          ·
          edit-2
          8 months ago

          It depends. If you’re using a laptop and say you take it to university or work then you’re not on your LAN. You’re on someone else’s LAN and they may have no interest in trying to stop these types of attacks via any kind of client isolation or it may be incomplete.

          I can imagine it’s a very normal scenario for university students to have CUPS running and available on all networks as they may need to print at their university.

        • Nunar@lemmy.world
          link
          fedilink
          arrow-up
          3
          ·
          8 months ago

          You’ve just described every enterprise who allows Linux in their environment.

      • ryannathans@aussie.zone
        link
        fedilink
        arrow-up
        5
        ·
        8 months ago

        Going to rely on security through obscurity instead?

      • nialv7@lemmy.world
        link
        fedilink
        arrow-up
        1
        ·
        8 months ago

        Errr I use mdns all the time…

    • ryannathans@aussie.zone
      link
      fedilink
      arrow-up
      2
      ·
      8 months ago

      Someone doesn’t like apple

      • Nunar@lemmy.world
        link
        fedilink
        arrow-up
        9
        ·
        8 months ago

        Nobody likes Apple. They’re just afraid to say they don’t.

      • masterofn001@lemmy.ca
        link
        fedilink
        arrow-up
        6
        ·
        8 months ago

        They’re standardised zeroconnf protocols. Apple was part of the early development.

        Bonjour is the apple implementation for mDNS.

        Avahi is the GPL compliant implementation.

        mDNS, llmnr (ms developed), have been known for ages to be vulnerable.

        https://en.m.wikipedia.org/wiki/Zero-configuration_networking#Standardization

        *I don’t like apple

        • ryannathans@aussie.zone
          link
          fedilink
          arrow-up
          2
          ·
          8 months ago

          To be vulnerable to what?

          • masterofn001@lemmy.ca
            link
            fedilink
            arrow-up
            3
            ·
            edit-2
            8 months ago

            https://duckduckgo.com/?q=mdns+vulnerability&t=fpas&ia=web

            https://book.hacktricks.xyz/generic-methodologies-and-resources/pentesting-network/spoofing-llmnr-nbt-ns-mdns-dns-and-wpad-and-relay-attacks

            • ryannathans@aussie.zone
              link
              fedilink
              arrow-up
              1
              ·
              8 months ago

              I could similarly link you an internet search for http or tls vulnerability, I fail to see your point

Linux@lemmy.ml

linux@lemmy.ml

Subscribe from Remote Instance

Create a post
You are not logged in. However you can subscribe from another Fediverse account, for example Lemmy or Mastodon. To do this, paste the following into the search field of your instance: !linux@lemmy.ml

From Wikipedia, the free encyclopedia

Linux is a family of open source Unix-like operating systems based on the Linux kernel, an operating system kernel first released on September 17, 1991 by Linus Torvalds. Linux is typically packaged in a Linux distribution (or distro for short).

Distributions include the Linux kernel and supporting system software and libraries, many of which are provided by the GNU Project. Many Linux distributions use the word “Linux” in their name, but the Free Software Foundation uses the name GNU/Linux to emphasize the importance of GNU software, causing some controversy.

Rules

  • Posts must be relevant to operating systems running the Linux kernel. GNU/Linux or otherwise.
  • No misinformation
  • No NSFW content
  • No hate speech, bigotry, etc

Related Communities

  • !opensource@lemmy.ml
  • !libre_culture@lemmy.ml
  • !technology@lemmy.ml
  • !libre_hardware@lemmy.ml

Community icon by Alpár-Etele Méder, licensed under CC BY 3.0

Visibility: Public
globe

This community can be federated to other instances and be posted/commented in by their users.

  • 43 users / day
  • 1.68K users / week
  • 6.03K users / month
  • 16.5K users / 6 months
  • 2 local subscribers
  • 54.5K subscribers
  • 3.64K Posts
  • 72.8K Comments
  • Modlog
  • mods:
  • nooter692@lemmy.ml
  • MarcellusDrum@lemmy.ml
  • Arthur Besse@lemmy.ml
  • Cyclohexane@lemmy.ml
  • d3Xt3r@lemmy.nz
  • BE: 0.19.5
  • Modlog
  • Instances
  • Docs
  • Code
  • join-lemmy.org