Linux Kernel 2.4/2.6 - 'sock_sendpage()' Local Privilege Escalation (3)

EDB-ID:

9641




Platform:

Linux

Date:

2009-09-11


This third version features: Complete support for i386, x86_64, ppc and ppc64; The
personality trick published by Tavis Ormandy and Julien Tinnes; The TOC
pointer workaround for data items addressing on ppc64 (i.e. functions
on exploit code and libc can be referenced); Improved search and
transition to SELinux types with mmap_zero permission.

https://gitlab.com/exploit-database/exploitdb-bin-sploits/-/raw/main/bin-sploits/9641.tar.gz (2009-linux-sendpage3.tar.gz)

# milw0rm.com [2009-09-11]