blog comments 0 del.icio.us bookmarks 0 diggs 0 Google results 0

2.5
PostRank

MOAB-28-01-2007: Apple crashdump Privilege Escalation Vulnerability

From Apple Fun, 1 year ago, 0 views

crashdump follows symlinks within the /Library/Logs/CrashReporter/ directory, allowing admin-group users to execute arbitrary code and overwrite files with elevated privileges. In couple with a specially crafted Mach-O binary, this can be used to write a malicious crontab entry, which will run with root privileges.
Apple crashdump Privilege Escalation VulnerabilityExploit: MOAB-28-01-2007.rb and vuln

comments

No comments yet.

You must be logged in to add your own comment.