appsec
appsec fuckReddit 1y ago 100%

root with a single command: sudo logrotate

https://joshua.hu/gaining-root-with-logrotate-sudo-ubuntu

The scenario is this: a brand new Ubuntu 22.04 server has an account which is restricted to running sudo logrotate *. Can we get root? Short answer: Yes. I couldn’t find much online about this type of exploitation of logrotate, so let’s document something for future use.

3
0
Comments 0