OpenSMTPD Out-Of-Bounds Read / Local Privilege Escalation
Posted by deepcore on March 6, 2020 – 9:28 am
This Metasploit module exploits an out-of-bounds read of an attacker-controlled string in OpenSMTPD’s MTA implementation to execute a command as the root or nobody user, depending on the kind of grammar OpenSMTPD uses.
Post a reply
You must be logged in to post a comment.