vendor:
Qpopper poppassd
by:
kcope
7,2
CVSS
HIGH
Local Privilege Escalation
264
CWE
Product Name: Qpopper poppassd
Affected Version From: N/A
Affected Version To: N/A
Patch Exists: NO
Related CWE: N/A
CPE: N/A
Metasploit:
N/A
Other Scripts:
N/A
Tags: N/A
CVSS Metrics: N/A
Nuclei References:
N/A
Nuclei Metadata: N/A
Platforms Tested: Linux
2005
Linux Qpopper poppassd latest version local r00t exploit by kcope
This exploit is a local privilege escalation vulnerability in the Linux Qpopper poppassd service. It allows a local user to gain root privileges by exploiting a flaw in the poppassd service. The exploit works by creating a shared library file with a malicious _init() function, which is then loaded by the poppassd service. This malicious library file then executes a setuid shell, which gives the user root privileges.
Mitigation:
The best way to mitigate this vulnerability is to ensure that the poppassd service is not running on the system. If it is necessary to run the service, it should be configured to run with the least privileges possible.