[Freeswitch-users] faxploit

Mike Jerris mike at freeswitch.org
Wed Aug 26 20:22:17 UTC 2020


Issues with spendsp should be filed against the library so the maintainer can review

https://github.com/freeswitch/spandsp/issues <https://github.com/freeswitch/spandsp/issues>


> On Aug 24, 2020, at 4:14 AM, mayamatakeshi <mayamatakeshi at gmail.com> wrote:
> 
> Hi,
> 
> Check Point researchers have discovered a vulnerability in the ITU T.30 fax protocol that could be hacked to launch a cyberattack and gain access to a network.
> 
> https://www.healthcareitnews.com/news/fax-machines-can-be-hacked-breach-network-using-only-its-number <https://www.healthcareitnews.com/news/fax-machines-can-be-hacked-breach-network-using-only-its-number>
> 
> The phrase above indicates a flaw in the T.30 protocol itself and not in particular implementations.
> This is from 2018. 
> I don't remember reading anything about this in the fs mailing list.
> 
> Was freeswitch/spandsp audited to ensure application rxfax is safe?
> 
> https://blog.checkpoint.com/2018/08/12/faxploit-hp-printer-fax-exploit/ <https://blog.checkpoint.com/2018/08/12/faxploit-hp-printer-fax-exploit/>
> 
> 

-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://lists.freeswitch.org/pipermail/freeswitch-users/attachments/20200826/b0abd916/attachment-0001.html>


More information about the FreeSWITCH-users mailing list