Quantcast
Channel: Files from stealth ≈ Packet Storm
Viewing all articles
Browse latest Browse all 22

FreeBSD rtld execl() Privilege Escalation

$
0
0
This Metasploit module exploits a vulnerability in the FreeBSD run-time link-editor (rtld). The rtld unsetenv() function fails to remove LD_* environment variables if __findenv() fails. This can be abused to load arbitrary shared objects using LD_PRELOAD, resulting in privileged code execution.

Viewing all articles
Browse latest Browse all 22

Latest Images

Trending Articles



Latest Images