Subscribe via feed.

OpenSMTPD Out-Of-Bounds Read / Local Privilege Escalation

Posted by deepcore on March 6, 2020 – 9:28 am

This Metasploit module exploits an out-of-bounds read of an attacker-controlled string in OpenSMTPD’s MTA implementation to execute a command as the root or nobody user, depending on the kind of grammar OpenSMTPD uses.


This post is under “exploit” and has no respond so far.
If you enjoy this article, make sure you subscribe to my RSS Feed.

Post a reply

You must be logged in to post a comment.