linux 0-day, access root-owned files as an unprivileged user

Lobsters·111 points·dzwdz·5 months ago·github.com

Steal SSH host private keys and /etc/shadow via the ptrace_may_access mm-NULL bypass + pidfd_getfd. Pre-31e62c2ebbfd kernels. - 0xdeadbeefnetwork/ssh-keysign-pwn

Read the full article at github.com →

Related stories

Related topics