exploits , vulnerabilities , articles , Sudo Perl Environment Variable Handling Security Bypass Vulnerability
| Title |
Sudo Perl Environment Variable Handling Security Bypass Vulnerability |
| Published |
2005-11-11-12:00AM |
| Updated |
2005-12-20-08:48PM |
| Class |
Input Validation Error |
| CVE |
CVE-2005-4158 |
| Remote |
No |
| Local |
Yes |
| Credit |
Charles Morris is credited with the discovery of this vulnerability. |
| Vulnerable |
Todd Miller Sudo 1.6.8 p9
Todd Miller Sudo 1.6.8 p8
Todd Miller Sudo 1.6.8 p7
Todd Miller Sudo 1.6.8 p5
Todd Miller Sudo 1.6.8 p1
Todd Miller Sudo 1.6.8
Todd Miller Sudo 1.6.7 p5
Todd Miller Sudo 1.6.7
Todd Miller Sudo 1.6.6
Todd Miller Sudo 1.6.5 p2
Todd Miller Sudo 1.6.5 p1
Todd Miller Sudo 1.6.5
Todd Miller Sudo 1.6.4 p2
Todd Miller Sudo 1.6.4 p1
Todd Miller Sudo 1.6.4
Todd Miller Sudo 1.6.3 p7
Todd Miller Sudo 1.6.3 p6
Todd Miller Sudo 1.6.3 p5
Todd Miller Sudo 1.6.3 p4
Todd Miller Sudo 1.6.3 p3
Todd Miller Sudo 1.6.3 p2
Todd Miller Sudo 1.6.3 p1
Todd Miller Sudo 1.6.3
Todd Miller Sudo 1.6.2
Todd Miller Sudo 1.6.1
Todd Miller Sudo 1.6
Todd Miller Sudo 1.5.9
Todd Miller Sudo 1.5.8
Todd Miller Sudo 1.5.7
Todd Miller Sudo 1.5.6
MandrakeSoft Multi Network Firewall 2.0
MandrakeSoft Linux Mandrake 2006.0 x86_64
MandrakeSoft Linux Mandrake 2006.0
MandrakeSoft Linux Mandrake 10.2 x86_64
MandrakeSoft Linux Mandrake 10.2
MandrakeSoft Linux Mandrake 10.1 x86_64
MandrakeSoft Linux Mandrake 10.1
MandrakeSoft Corporate Server 3.0 x86_64
MandrakeSoft Corporate Server 3.0
MandrakeSoft Corporate Server 2.1 x86_64
MandrakeSoft Corporate Server 2.1 |
| Not Vulnerable |
|
| Code |
No exploit is required.
Example text and Perl code to exploit this vulnerability is provided by breno <breno@kalangolinux.org>:
/data/vulnerabilities/exploits/sudo_local_perl_root.txt
/data/vulnerabilities/exploits/sudo_local_perl_root.txt
/data/vulnerabilities/exploits/sudo_local_perl_root.txt
/data/vulnerabilities/exploits/sudo_local_perl_root.txt
/data/vulnerabilities/exploits/sudo_local_perl_root.txt
|
| TXT |
 |
|
Advertising
|
|
Copyright 2007,
SecurityDot
Fri, 18 Dec 2009 09:04:08 +0000
Friends : milw0rm.com , secunia.com , securityfocus.com
GOOGLE
NEWS
EXPLOITS
VULNS
exploits , 0day exploits , newest exploits , vulnerabilities , newest vulnerabilities , 0day vulnerabilities , newest articles , linux articles , articles
mtr www.tianxi Vp-asp php-nuke 2 FreeBSd ex slim serve www.kamasu squidoo.co xnxx.com kasperskay php-nuke 2 t290t pic naked Www sex pe php-nuke 2 m...m/id.t free sexy nbmjbhhjhj www.qdjcjx 200 /compo Sima WWW.XNXXCO php-nuke 2 indian cho cisco call WWE themes kiss-star. php-nuke 2 WWW.XNXXCO php-nuke 2 www.jiewei Ayeshataki php-nuke 2 php-nuke 2 dps php-nuke 2 Tamil acto FTP sex vi 200 /compo Www.sania php-nuke 2 Free fuck. www.wucity php-nuke 2 php-nuke 2 php-nuke 2 acp Crack Data . . SERTA&
|