DeleGate 9.9.13 Local Root
Posted by deepcore on December 31, 2015 – 11:57 pm
Installation of DeleGate version 9.9.13 sets some binaries setuid root and at least one of these binaries can be used to escalate the privileges of a local user. The binary dgcpnod creates a node allowing a local unprivileged user to create files anywhere on disk. By creating a file in /etc/cron.hourly a local user can execute commands as root.
Post a reply
You must be logged in to post a comment.