Pkexec - linux exploit

Answers and Replies

  • #3
jack action
Science Advisor
Insights Author
Gold Member
2,704
5,622
It looks like both the Linux kernel and the pkexec maintainers have patches in the works:

https://lore.kernel.org/lkml/20220126043947.10058-1-ariadne@dereferenced.org/T/

It looks like a proud "I told you so" moment for Michael Kerrisk:
https://lore.kernel.org/lkml/20220126043947.10058-1-ariadne@dereferenced.org/T/ said:
Interestingly, Michael Kerrisk opened an issue about this in 2008,
but there was no consensus to support fixing this issue then.
Hopefully now that CVE-2021-4034 shows practical exploitative use
of this bug in a shellcode, we can reconsider.
 
  • #5
jim mcnamara
Mentor
4,700
3,649
My linux boxes are offline for a while - but WSL Ubuntu shows the problem. That does not bode well for a fix... in the next month.
 
  • #6
41,253
18,882
WSL Ubuntu shows the problem.
You can "fix" it at least for the time being by removing the setuid bit from the pkexec executable.
 
  • Like
Likes jim mcnamara

Suggested for: Pkexec - linux exploit

  • Last Post
Replies
1
Views
551
Replies
4
Views
409
  • Last Post
Replies
9
Views
964
Replies
17
Views
810
Replies
4
Views
493
  • Last Post
Replies
4
Views
2K
  • Last Post
Replies
6
Views
993
Top