sudo chroot Tech Details [CVE-2025-32463]
Автор: 0xdf
Загружено: 2025-07-06
Просмотров: 3609
CVE-2025-32463, or sudo chroot, is a privilege escalation bug in sudo that's been in the wild since mid 2023. In this video, we'll understand the issue and how it works, and exploit the vulnerability to get root.
NIST page: https://nvd.nist.gov/vuln/detail/CVE-...
nsswitch.conf man page: https://man7.org/linux/man-pages/man5...
grep.app: https://grep.app/search?q=libnss_%22
dlopen man page: https://man7.org/linux/man-pages/man3...
POC: https://github.com/pr0v3rbs/CVE-2025-...
☕ Buy Me A Coffee: https://www.buymeacoffee.com/0xdf
[00:00] Introduction
[00:42] NIST CVE page
[01:41] nsswitch.conf man page
[03:55] grep.app finding similar code
[05:06] dlopen man page
[05:38] Pieces summary
[06:01] POC analysis
[09:19] Docker analysis
[10:04] Exploiting in Docker container
Доступные форматы для скачивания:
Скачать видео mp4
-
Информация по загрузке: