SCO UnixWare Ptrace Local Privilege Escalation Vulnerability

Although an exploit as such isn't required to trigger this issue, attackers may need to create an application to use the 'ptrace()' functionality to execute arbitrary code in a setuid-superuser application.


A proof-of-concept example is available:


 

Privacy Statement
Copyright 2010, SecurityFocus