blog comments 0 del.icio.us bookmarks 0 diggs 0 Google results 0

6.2
PostRank

MOAB-22-01-2007: Apple UserNotificationCenter Privilege Escalation Vulnerability

From Apple Fun, 1 year ago, 0 views

UserNotificationCenter retains wheel privileges on execution time, and still has a UID associated with the current user. Because of this, it> will attempt to run any InputManager provided by the user. Code within the input manager will run under wheel privileges. In combination with diskutil and a wheel-writable setuid binary, this allows unprivileged users to gain root privileges.
Further information:
Apple UserNotificationCenter Privilege Escalation VulnerabilityExploit: MOAB-22-01-2007.rbUpdate: updated exploit (now fat binaries are used, thus exploit should work on a system without XCode and related developer tools; source code is provided to avoid the usual FUD about alleged 'root kits' and non-sense), release information, etc. KF worked hard on getting stuff up due to connectivity issues. He deserves a thumbs-up from everyone.

comments

No comments yet.

You must be logged in to add your own comment.