vendor:
Linux Kernel
by:
c0nd0r
7.2
CVSS
HIGH
Buffer Overflow
120
CWE
Product Name: Linux Kernel
Affected Version From: N/A
Affected Version To: N/A
Patch Exists: YES
Related CWE: N/A
CPE: o:linux:linux_kernel
Metasploit:
N/A
Other Scripts:
N/A
Tags: N/A
CVSS Metrics: N/A
Nuclei References:
N/A
Nuclei Metadata: N/A
Platforms Tested: Linux
2001
Lsof Local Exploit for Linux
Lsof is an open file management utility included with many linux distributions. When run setuid root or setgid kmem, it is subject to a buffer overflow that can lead to regular users gaining root priveleges. This exploit uses a technique of overflowing with 'A' till reaching the ret address and then filling with NOP and the shellcode just after the modified ret address. The user needs to provide an offset between 373-505.
Mitigation:
Upgrade to the latest version of lsof.