• Dave@lemmy.nz
    link
    fedilink
    arrow-up
    5
    ·
    9 hours ago

    The linked blog post explains about the vulnerability, I thought it was quite interesting.

    • Possibly linux@lemmy.zip
      link
      fedilink
      English
      arrow-up
      30
      ·
      15 hours ago

      On Linux it is just a catch all address (listen on all interfaces)

      Elsewhere it doesn’t do anything since I don’t believe it is part of the networking standards

        • sugar_in_your_tea@sh.itjust.works
          link
          fedilink
          arrow-up
          2
          ·
          4 hours ago

          If I were implementing it, I’d just list all interfaces on the machine and see if there’s a service bound to it on the given port. There’s probably only one, but it’s technically undefined behavior I think.

    • sugar_in_your_tea@sh.itjust.works
      link
      fedilink
      arrow-up
      2
      ·
      4 hours ago

      0.0.0.0 binds to all addresses on the machine for servers, but I don’t know what a browser would do when trying to resolve it. I guess look at all addresses on the machine and see if anything has bound to the indicated port on that address? First one it finds wins?

  • RedWeasel@lemmy.world
    link
    fedilink
    English
    arrow-up
    21
    arrow-down
    10
    ·
    edit-2
    3 hours ago

    I just wish they’d stop blocking http requests on lan addresses honestly.

    Thanks for the suggestions. While I was investigating I ended up looking and had a proxy issue. Obviously a problem on my part.

  • Eager Eagle@lemmy.world
    link
    fedilink
    English
    arrow-up
    7
    ·
    16 hours ago

    Fine by me. I self-host a lot of stuff but never used 0.0.0.0 for browsing, so I just disabled it here to try it out.

  • HubertManne@moist.catsweat.com
    link
    fedilink
    arrow-up
    6
    arrow-down
    11
    ·
    15 hours ago

    seriously. I like the federation but people way overuse the spoiler tag or nsfw or whatever. I usually skip over but had to vent. Oh uh. ankle in this one. better make sure no one gets fired over it.

      • HubertManne@moist.catsweat.com
        link
        fedilink
        arrow-up
        1
        ·
        2 hours ago

        curiously someone asked me about it but before I could answer as it was my overnight a whole chain went up with folks that solved the mystery. Its something that for some reason is not showing between lemmy and mbin. So mbin users should (not) see it while presumably lemmy users will not realize the tag is there. Honestly I would like mbin to allow me to ignore the tag but apparently saying show nsfw just means the feed will show but it does the tag thing. Don’t get me wrong I would use it but only if users kept to to blocking just completely graphic stuff. I would rather see the graphic stuff than the rediculously mild stuff that gets blured. Maybe its mbin users with the dainty feelings.