Buffer Overflow Privilege Escalation
Buffer overflow in Linux might be vulnerable to privilege escalation (PrivEsc).
sudoedit -s '\' $(python3 -c 'print("A"*1000)')
malloc(): invalid size (unsorted)
Aborted
Copied!There are various PoC online.
If so, when running sudo command and inputting password, asterisk will be displayed. You can make it the buffer overflow.
cat /etc/sudoers
# -------------------------------------------
...
Defaults pwfeadback
...
Copied!After that, you'll get a root shell.
Last updated
