vendor:
G3 iMacs
by:
kf
9,3
CVSS
HIGH
Local Root Exploit
264
CWE
Product Name: G3 iMacs
Affected Version From: 10.3.7 Build 7T65 on PowerPC
Affected Version To: 10.3.7 debug 0x41424344
Patch Exists: No
Related CWE: N/A
CPE: N/A
Metasploit:
N/A
Other Scripts:
N/A
Tags: N/A
CVSS Metrics: N/A
Nuclei References:
N/A
Nuclei Metadata: N/A
Platforms Tested: PowerPC
Unknown
Variant of CF_CHARSET_PATH a local root exploit by v9_at_fakehalo.us
This exploit is a variant of CF_CHARSET_PATH a local root exploit by v9_at_fakehalo.us. It is used to gain root access on old G3 iMacs. It uses a wrapper to gain euid=0 and sets the environment variable CF_CHARSET_PATH to a specific value. It then executes the authopen command to gain root access.
Mitigation:
Ensure that the environment variables are set to secure values and that the authopen command is not used.