CVE-2017-1000367
CVE-2017-1000367
Todd Miller's sudo version 1.8.20 and earlier is vulnerable to an input validation (embedded spaces) in the get_process_ttyname() function resulting in information disclosure and command execution.
Productos afectados
n/a · n/aPoCs públicas encontradas — 7
githubgithub.com/c0d3z3r0/sudo-CVE-2017-1000367★ 113githubgithub.com/pucerpocok/sudo_exploit★ 6githubgithub.com/homjxi0e/CVE-2017-1000367★ 1githubgithub.com/letsr00t/CVE-2017-1000367★ 0cve_referencepacketstormsecurity.com/files/142783/Sudo-get_process_ttyname-Race-Condition.htmlno verificadocve_referencewww.exploit-db.com/exploits/42183/no verificadoexploitdbwww.exploit-db.com/exploits/42183no verificado⚠ Recursos públicos, para evaluar la exposición de sistemas que controlas o estás autorizado a probar. Prueba solo con autorización.
¿Quieres saber si tu infraestructura está expuesta a esto?
Hablar con TrueHacking →Referencias
http://lists.opensuse.org/opensuse-security-announce/2017-05/msg00077.htmlhttp://lists.opensuse.org/opensuse-security-announce/2017-05/msg00078.htmlhttp://lists.opensuse.org/opensuse-security-announce/2017-05/msg00079.htmlhttp://packetstormsecurity.com/files/142783/Sudo-get_process_ttyname-Race-Condition.htmlhttps://access.redhat.com/errata/RHSA-2017:1381https://access.redhat.com/errata/RHSA-2017:1382http://seclists.org/fulldisclosure/2017/Jun/3https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/VXEXC4NNIG2QOZY6N2YUK246KI3D3UQO/https://security.gentoo.org/glsa/201705-15https://www.exploit-db.com/exploits/42183/https://www.sudo.ws/alerts/linux_tty.htmlhttp://www.debian.org/security/2017/dsa-3867