mailing list archives
Re: TTY handling when executing code in different lower-privileged context (su, virt containers)
From: halfdog <me () halfdog net>
Date: Tue, 06 Nov 2012 18:53:48 +0000
-----BEGIN PGP SIGNED MESSAGE-----
On Mon, Nov 05, 2012 at 07:22:37PM +0000, halfdog wrote:
During programming experiments I found some class of
vulnerabilities , that seem to be rediscovered again from time
to time, but since attack value is questionable, it was not fixed
... I wrote this little PoC  to hijacked interactive bash shell
opened with "su - <user>".
Off-List: May I have permission to reference your POC from my page?
PGP: 156A AE98 B91F 0114 FE88 2BD8 C459 9386 feed a bee
-----BEGIN PGP SIGNATURE-----
Version: GnuPG v1.4.11 (GNU/Linux)
-----END PGP SIGNATURE-----