Emacs movemail Privilege Escalation
Posted by deepcore on December 5, 2018 – 12:46 am
This Metasploit module exploits a SUID installation of the Emacs movemail utility to run a command as root by writing to 4.3BSD’s /usr/lib/crontab.local. The vulnerability is documented in Cliff Stoll’s book The Cuckoo’s Egg.
Post a reply
You must be logged in to post a comment.