Linux needrestart本地提权漏洞(CVE-2024-48990)

2024-12-03 Linux needrestart PoC No

Description

Needrestart使用PYTHONPATH环境变量执行Python解释器,如果本地攻击者控制该变量,可以通过植入恶意共享库,在Python初始化期间以root身份执行任意代码。

PoC

None yet. Search at https://trap.biu.life/?ref=rss

References

Related Vulnerabilities