Important: ppp security update

Posted on

Hi Team,

We have our audit team raised "A buffer overflow flaw was found in the ppp package in versions 2.4.2 through 2.4.8" PPPD vulnerability that needs to be patched.

https://access.redhat.com/security/cve/cve-2020-8597

We dont know whether we are impacted or not ? How do we check that pppd is enabled or disabled?

when i run /usr/sbin/pppd -version ---> it gives me the version 2.4.5

Iam running RHEL 7.X version.

many says even not installed , it will give the version of pppd.

How to i check if my Linux system is enabled with PPPD? i dont see any process running with pppd.

Can you suggest how to know whether my linux system is affected or not?

Responses