CORE IMPACT v7.5 - Exploits Update (Mon Nov 19 2007)
Linux ptrace x86_64 ia32syscall emulation exploit
Exploits/Local [Linux]
Mon Nov 19 2007
This module exploits a vulnerability in Linux for x86_64. The IA32 system call emulation functionality does not zero extend the eax register after the 32bit entry path to ptrace is used, which might allow local users to trigger an out-of-bounds access to the system call table using the %RAX register and escalate privileges.
Exploits Vulnerabiltiy: CVE-2007-4573











