notoriously trustworthy
Showing 1 - 1 of 1 RSS Feed

Files

ldsoWhoops.txt
Posted Jun 29, 2005
Authored by Venglin

ld.so from Solaris 9 and 10 does not check the LD_AUDIT environment variable when running setuid and setgid binaries, allowing a malicious party to run arbitrary code with elevated privileges.

tags | exploit, arbitrary
systems | solaris
MD5 | 02b0fa3de66ae2c25e511bb747ec86a9
Page 1 of 1
Back1Next

Top Authors In Last 30 Days

packet storm

© 2012 Packet Storm. All rights reserved.

close