|
|
#1 | |
|
Registered User
Join Date: Feb 2008
Posts: 163
|
Please fix this security issue!!
http://permalink.gmane.org/gmane.com...sclosure/86747 Quote:
http://pastebin.com/Gg0LBBUA Code:
[leigh@main-pc Desktop]$ ./nvidia[*] IDT offset at 0xffffffff81dea000[*] Abusing nVidia...[*] CVE-2012-YYYY[*] 64-bits Kernel found at ofs 0[*] Using IDT entry: 220 (0xffffffff81deadc0)[*] Enhancing gate entry...[*] Triggering payload...[*] Hiding evidence...[*] Have root, will travel..
sh-4.2# whoami
root
sh-4.2#
__________________
leigh123linux |
|
|
|
|
|
|
#2 | |
|
Registered User
Join Date: Mar 2012
Posts: 31
|
NO recommend user root.
Recommended user normal. |
|
|
|
|
|
|
#3 |
|
Registered User
Join Date: Feb 2008
Posts: 163
|
Your reply is senseless.
__________________
leigh123linux |
|
|
|
|
|
#4 | |
|
Registered User
Join Date: Feb 2007
Posts: 113
|
Does not work for me
Code:
~/scripts towo:Defiant> uname -a Linux Defiant 3.5-0.towo-siduction-amd64 #1 SMP PREEMPT Mon Jul 30 16:30:29 UTC 2012 x86_64 GNU/Linux ~/scripts towo:Defiant> whoami towo ~/scripts towo:Defiant> ./nvidia [*] IDT offset at 0xffffffff8172a000[*] Abusing nVidia...[*] CVE-2012-YYYY[*] 64-bits Kernel found at ofs 0[*] Using IDT entry: 220 (0xffffffff8172adc0)[*] Enhancing gate entry...[*] Triggering payload... Getötet ~/scripts towo:Defiant> |
|
|
|
|
|
|
#5 |
|
Registered User
Join Date: Jun 2006
Posts: 681
|
304.32 drivers fix this security issue.
|
|
|
|
|
|
#6 | |
|
Registered User
Join Date: Feb 2008
Posts: 163
|
Confirmed
Code:
[leigh@main-pc Desktop]$ ./nvidia [*] IDT offset at 0xffffffff81dea000[*] Abusing nVidia... [leigh@main-pc Desktop]$ ./nvidia [*] IDT offset at 0xffffffff81dea000[*] Abusing nVidia... [leigh@main-pc Desktop]$ ./nvidia [*] IDT offset at 0xffffffff81dea000[*] Abusing nVidia... [leigh@main-pc Desktop]$
__________________
leigh123linux |
|
|
|
|
|
|
#7 |
|
Registered User
Join Date: Aug 2007
Posts: 35
|
Linux darkstar 3.4.6-2.fc17.i686.PAE #1 SMP Thu Jul 19 21:49:03 UTC 2012 i686 i686 i386 GNU/Linux
[*] IDT offset at 0xc0b70000[*] Abusing nVidia...[*] CVE-2012-YYYY[*] 32-bits Kernel found at ofs 0[*] Using IDT entry: 220 (0xc0b706e0)[*] Enhancing gate entry...[*] Triggering payload...[*] Hiding evidence... callsetroot returned 1 (1)[*] Failed to get root. nvidia 302.17 |
|
|
|
|
|
#8 |
|
Registered User
Join Date: Jan 2007
Posts: 119
|
Fails here too with nvidia 302.17, pae system
|
|
|
|
|
|
#9 |
|
Registered User
Join Date: Mar 2010
Location: UK
Posts: 16
|
I've been unable to exploit RHEL5 or RHEL6 64-bit systems running 256.53, 295.59 or 302.17. Some users report hard lockups (crashes) whereas I see nothing.
Code:
[phil@Quad nvidia]$ ./nvidia-exploit [*] IDT offset at 0xffffffff804b8000 [*] Abusing nVidia... [phil@Quad nvidia]$ whoami phil
__________________
http://elrepo.org The Community Enterprise Linux Repository |
|
|
|
|
|
#10 |
|
Registered User
Join Date: Jan 2007
Posts: 119
|
Well, I've had an instant reboot after i tried to change tty
![]() |
|
|
|
![]() |
| Thread Tools | |
|
|