c0nsid3rate đŸŒ± · @c0nsid3rate
333 followers · 788 posts · Server infosec.exchange

Hello PwnKit my old friend... There is a self-contained version of that exploit out on GitHub that is just the cat's meow. I know you're supposed to compile your own exploits, but man is that bugger handy.

#infosec #pwnkit #oscp

Last updated 3 years ago

c0nsid3rate đŸŒ± · @c0nsid3rate
256 followers · 503 posts · Server infosec.exchange

Rooted another OSCP machine this morning. There is no other exploit that has been more widespread and easy to leverage than pwnkit (CVE-2021-4034). I've simply lost count of the the number of machines I've been able to use this on to get root access from a low-privilege account. For people who do this kind of stuff, this post is a cold take, but I just wanted to come here and state the obvious. -2021-4034

From the Ubuntu website: "A local privilege escalation vulnerability was found on polkit’s pkexec utility. The pkexec application is a setuid tool designed to allow unprivileged users to run commands as privileged users according predefined policies. The current version of pkexec doesn’t handle the calling parameters count correctly and ends trying to execute environment variables as commands. An attacker can leverage this by crafting environment variables in such a way it’ll induce pkexec to execute arbitrary code. When successfully executed the attack can cause a local privilege escalation given unprivileged users administrative rights on the target machine."

#oscp #pwnkit #polkit #cve #linux #pkexec #setuid

Last updated 3 years ago

DeaDSouL :fedora: :fediverse: · @DeaDSouL
37 followers · 252 posts · Server fosstodon.org
Red Hat Enterprise Linux · @RedHatRHEL
539 followers · 656 posts · Server mastodon.social

is the latest of named attacks across systems. Do you think your servers maybe at risk? Red Hat Insights is here to help! See what systems are vulnerable and deploy a patch all from one UI! redhat.com/en/blog/discover-an

#pwnkit #security #linux #rhel

Last updated 4 years ago

benzogaga33 · @benzogaga33
545 followers · 17844 posts · Server mamot.fr
ComputerBase · @ComputerBase
1525 followers · 17633 posts · Server mastodon.social
ComputerBase · @ComputerBase
2051 followers · 18379 posts · Server mastodon.social
ITSEC News · @itsecbot
856 followers · 32557 posts · Server schleuss.online

“PwnKit” security bug gets you root on most Linux distros – what to do - An elevation of privilege bug that could let a "mostly harmless" user give themselves a i... nakedsecurity.sophos.com/2022/ -2021-4034

#eop #linux #pwnkit #pkexec #cve #vulnerability

Last updated 4 years ago

Neurosploit · @neurosploit
28 followers · 66 posts · Server bitcoinhackers.org

RT @qualys
The Research Team has discovered an easily exploitable memory corruption vulnerability () in polkit a SUID-root program that allows any unprivileged local user to gain root privileges on all major linux systems in its default configuration: fal.cn/3lCr6

#pwnkit #qualys

Last updated 4 years ago

À dĂ©faut d'avoir accĂšs au patch (Bookworm pour l'instant, peut-ĂȘtre voire probablement de trĂšs vielles RHEL en prod, sans de possibilitĂ© de mise Ă  jour parce que appli « pro » Ă  la con hors de prix jamais maintenue depuis 10 ans
, ou whatever), on peut toujours enlever Ă  pkexec le bit SETUID comme solution de contournement temporaire.

#pwnkit

Last updated 4 years ago

Mettez à jour vos distro. La faille d'élévation de privilÚge avec un user local via /pkexec, , a un patch depuis hier 5:00 PM UTC. Probablement sur un bon paquet de distrib, car publication de patch coordonnée. En tout a coup sur pour Debian stable, oldstable et oldoldstable.

security-tracker.debian.org/tr

#pwnkit #polkit

Last updated 4 years ago

Senioradmin · @Haydar
568 followers · 6012 posts · Server social.tchncs.de

Auf allen Servern kein installiert - check.

#pwnkit #polkit

Last updated 4 years ago

Senioradmin · @Haydar
568 followers · 6012 posts · Server social.tchncs.de
DACBARBOS Brand · @dacbarbos
79 followers · 1650 posts · Server mastodon.social

Local Privilege Escalation in polkit's pkexec (CVE-2021-4034) qualys.com/2022/01/25/cve-2021

#pwnkit #infosec

Last updated 4 years ago