New Sudo Exploit Effects Most Linux Systems
Brodie Robertson | Linux Tips & Tricks
Every so often a new sudo exploit is discovered but usually they require some special configuration or non standard install, the Baron_Samedit buffer overflow exploit however, effects every linux install that has an /etc/sudoers which is basically every single one of them
==========Support The Channel========== ► $100 Linode Credit: https://linode.gvw92c.net/BrodieRobertson ► Patreon: https://www.patreon.com/brodierobertson ► Paypal: https://www.paypal.me/BrodieRobertsonVideo ► Amazon USA: https://amzn.to/3d5gykF ► Other Methods: https://cointr.ee/brodierobertson
==========Resources==========
Sudo Exploit Article: https://www.zdnet.com/article/10-years-old-sudo-bug-lets-linux-users-gain-root-level-access/
Minus 1 UID Exploit: https://www.sudo.ws/alerts/minus_1_uid.html
PWFeedback Exploit: https://www.sudo.ws/alerts/pwfeedback.html
Exploit Test: sudoedit -s '' perl -e 'print "A" x 65536'
Exploit Documentation: https://www.qualys.com/2021/01/26/cve-2021-3156/baron-samedit-heap-based-overflow-sudo.txt
Exploit Blog: https://blog.qualys.com/vulnerabilities-research/2021/01/26/cve-2021-3156-heap-based-buffer-overflow-in-sudo-baron-samedit
=========Video Platforms========== 🎥 LBRY: https://open.lbry.com/@BrodieRobertson#5 📺 BitChute: https://www.bitchute.com/channel/brodierobertson/ 📚 Odysee Podcast: https://odysee.com/@TechOverTea:3 🎥 YouTube Podcast: https://www.youtube.com/c/TechOverTea 🎮 Gaming Channel: https://www.youtube.com/channel/UCzoHGpA2AvO2Vo3WUwb7Seg
==========Social Media========== 🎤 Discord: https://discord.gg/PkMRVn9 🎤 Matrix: https://matrix.to/#/+brodieschatroom:matrix.org 🐦 Twitter: https://twitter.com/BrodieOnLinux 🌐 Mastodon: https://mstdn.social/@BrodieOnLinux ✉️ Telegram: https://t.me/BrodieRobertson
==========My Repos========== 🖥️ GitHub: https://github.com/BrodieRobertson
==========Credits========== 🎨 Channel Art: All my art has was created by Supercozman https://twitter.com/Supercozman https://www.instagram.com/supercozman_draws/
🎵 Ending music Music from https://filmmusic.io "Basic Implosion" by Kevin MacLeod (https://incompetech.com) License: CC BY (http://creativecommons.org/licenses/by/4.0/)
DISCLOSURE: Wherever possible I use referral links, which means if you click one of the links in this video or description and make a purchase I may receive a small commission or other compensation. ... https://www.youtube.com/watch?v=vvMMQt7BwGE
95258919 Bytes