cve/2014/CVE-2014-0476.md
2024-05-26 14:27:05 +02:00

816 B

CVE-2014-0476

Description

The slapper function in chkrootkit before 0.50 does not properly quote file paths, which allows local users to execute arbitrary code via a Trojan horse executable. NOTE: this is only a vulnerability when /tmp is not mounted with the noexec option.

POC

Reference

Github