vendor:
FreeBSD
by:
Don 'north' Bailey
7.2
CVSS
HIGH
Privilege Escalation
264
CWE
Product Name: FreeBSD
Affected Version From: FreeBSD 7.0
Affected Version To: FreeBSD 7.1
Patch Exists: YES
Related CWE: CVE-2008-4609
CPE: o:freebsd:freebsd
Other Scripts:
N/A
Tags: N/A
CVSS Metrics: N/A
Nuclei References:
N/A
Nuclei Metadata: N/A
Platforms Tested: FreeBSD
2008
FreeBSD protosw Vulnerability Exploit
This exploit is for the FreeBSD protosw vulnerability which allows an attacker to overwrite the credential structure in the kernel. This will affect more than just the exploit's process, which is why this doesn't spawn a shell. When the exploit has finished, the login shell should have euid=0.
Mitigation:
The vulnerability can be mitigated by applying the patch provided by the vendor.