CVE-2020-8597 is a critical buffer overflow vulnerability in the eap.c component of pppd in ppp versions 2.4.2 through 2.4.8, affecting products from vendors like Canonical, Debian, and Wago. With a CVSS score of 9.8 (CRITICAL), it allows for unauthenticated remote code execution with high impact on confidentiality, integrity, and availability, requiring no user interaction. While not listed in CISA's KEV catalog or having public exploit code in Metasploit or ExploitDB, its high EPSS score and media coverage suggest significant community awareness and potential for future exploitation.
| Vendor | Product | Version(s) | CPE |
|---|---|---|---|
>= 2.4.2, <= 2.4.8CPE matchmatch criteria | cpe:2.3:a:point-to-point_protocol_project:point-to-point_protocol:*:*:*:*:*:*:*:* | ||
< 03.04.10\(16\)CPE matchmatch criteria | cpe:2.3:o:wago:pfc_firmware:*:*:*:*:*:*:*:* | ||
9.0CPE matchmatch criteria | cpe:2.3:o:debian:debian_linux:9.0:*:*:*:*:*:*:* | ||
10.0CPE matchmatch criteria | cpe:2.3:o:debian:debian_linux:10.0:*:*:*:*:*:*:* | ||
12.04CPE matchmatch criteria | cpe:2.3:o:canonical:ubuntu_linux:12.04:*:*:*:-:*:*:* |
CVSS version used by this source: 3.1
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
The average CVE in this peer group has 0.0 Twitter, 0.1 Reddit, 0.3 Bluesky, 0.3 Mastodon, and 2.4 GitHub mentions.
The average CVE in this peer group has 0.3 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.
lwIP vulnerabilities
Jun 11, 2026CVE-2020-8597
Jul 9, 2024eap.c in pppd in ppp 2.4.2 through 2.4.8 has an rhostname buffer overflow in the eap_request and eap_response functions.
Feb 11, 2020ppp: Buffer overflow in the eap_request and eap_response functions in eap.c
Feb 3, 2020