Description: Timeline :
Exploit released the 2010-12-07 by Dan Rosenberg
CVE-2010-4258 reported the 2010-12-02 by Nelson Elhage
CVE-2010-3850 reported the 2010-10-18 by Nelson Elhage
CVE-2010-3849 reported the 2010-10-18 by Nelson Elhage
Provided by:
Dan Rosenberg
Nelson Elhage
Reference(s) :
CVE-2010-4258
CVE-2010-3850
CVE-2010-3849
Affected versions :
Linux Kernel before or equal to version 2.6.37
Tested on Ubuntu 10.10 server
Description:
This exploit leverages three vulnerabilities to get root, all of which were discovered by Nelson Elhage.
Demo :
uname -a
uid
gcc full-nelson.c -o full-nelson
./full-neslon
uid
Tags: linux , kernel , 0day , escalation , ubuntu ,
Disclaimer: We are a infosec video aggregator and this video is linked from an external website. The original author may be different from the user re-posting/linking it here. Please do not assume the authors to be same without verifying.