this post was submitted on 27 Sep 2024
42 points (100.0% liked)
Linux
5362 readers
119 users here now
A community for everything relating to the linux operating system
Also check out !linux_memes@programming.dev
Original icon base courtesy of lewing@isc.tamu.edu and The GIMP
founded 1 year ago
MODERATORS
you are viewing a single comment's thread
view the rest of the comments
view the rest of the comments
So CUPS has to be installed and port 631 exposed for this to be an issue?
Yes.
Its nowhere near the risk that was claimed.
Basically an unauthenticated perl interpreter with root open to the network by default in most configurations across a couple decades.
It's about as bad as it can be?
Is it common for cups to run as root? It should have its own user, but that is still not good.