mirror of
https://github.com/0xMarcio/cve.git
synced 2026-05-09 23:27:33 +02:00
756 B
756 B
CVE-2012-3485
Description
Tunnelblick 3.3beta20 and earlier relies on argv[0] to determine the name of an appropriate (1) kernel module pathname or (2) executable file pathname, which allows local users to gain privileges via an execl system call.
POC
Reference
- http://www.openwall.com/lists/oss-security/2012/08/14/1
- http://www.openwall.com/lists/oss-security/2012/08/14/1
Github
No PoCs found on GitHub currently.