vendor:
cdrdao
by:
Karol Wiêsek
7.5
CVSS
HIGH
Local Privilege Escalation
CWE
Product Name: cdrdao
Affected Version From:
Affected Version To:
Patch Exists: NO
Related CWE:
CPE:
Platforms Tested:
2004
cdrdao local root exploit – gr doesn’t protect you this time
This script exploits a vulnerability in cdrdao to gain root privileges. It creates a malicious library and a suid shell, and then exploits cdrdao to overwrite the /etc/ld.so.preload file. By doing so, it gains root access and executes the suid shell.
Mitigation:
Remove the vulnerable version of cdrdao and update to a patched version. Ensure that the /etc/ld.so.preload file is not writable by non-root users.