vendor:
N/A
by:
s0m3b0dy1
7,2
CVSS
HIGH
Privilege Escalation
269
CWE
Product Name: N/A
Affected Version From: Gentoo 2.6.29rc1
Affected Version To: Gentoo 2.6.29rc1
Patch Exists: NO
Related CWE: N/A
CPE: N/A
Metasploit:
N/A
Other Scripts:
N/A
Tags: N/A
CVSS Metrics: N/A
Nuclei References:
N/A
Nuclei Metadata: N/A
Platforms Tested: Gentoo
Unknown
ptrace_attach privilege escalation exploit by s0m3b0dy
This exploit is a privilege escalation exploit which uses ptrace_attach to gain root access. It was tested on Gentoo 2.6.29rc1 and was written by s0m3b0dy1 (at) gmail.com. The exploit uses a shellcode to execute a setuid program which then gives the user root access.
Mitigation:
Ensure that all setuid programs are properly secured and that all users have the least amount of privileges necessary to perform their tasks.