Joe is back to discuss a recent breach against Wawa, plus we detail
security updates from the past week including Apache Solr, OpenStack
Keystone, Sudo, Django and more.
Show Notes
Overview
Joe is back to discuss a recent breach against Wawa, plus we detail
security updates from the past week including Apache Solr, OpenStack
Keystone, Sudo, Django and more.
Enterprise search server based on Lucene with XML/HTTP and JSON APIs
Was vulnerable to an XML External Entity (XXE) attack - XML can include a
reference to another XML resource which might then be fetched - this
could then be combined with another flaw (use of Config API to obtain
access to the RunExecutableListener class) to allow remote code fetched
from the remote XML
Keystone provides identity services (client authentication etc) for
OpenStack
credentials API allowed any user with a role on a project to list all
credentials when enforce_scope was false - so could view other users
credentials.
Was introduced in keystone 15 so didn’t affect bionic or older releases -
only eoan
Episode 59 - possible RCE via crafted CF file - 2 more similar
vulnerabilities fixed - again upstream advise should only use trusted
update channels or 3rd parted .cf files