[HN Gopher] SuDump: Exploiting suid binaries through the kernel
___________________________________________________________________
SuDump: Exploiting suid binaries through the kernel
Author : todsacerdoti
Score : 60 points
Date : 2021-10-20 16:27 UTC (2 days ago)
(HTM) web link (alephsecurity.com)
(TXT) w3m dump (alephsecurity.com)
| benkillin wrote:
| > As for now, we haven't found a way yet to include a logrotate
| configuration in the memory of the child before the coredump.
| Therefore, execution of commands is not possible without these
| strings in the memory.
|
| Couldn't they just supply the logrotate config as the password
| (for su) which will be passed down for checking?
___________________________________________________________________
(page generated 2021-10-22 23:02 UTC)