Linux kmod-ptrace race condition exploit v1.19

Vulnerability exploited: CAN-2003-0127 - BID-7112

Category: Exploits/Local

Gets root privileges in the target host.
The kernel module loader in Linux kernel 2.2.x before 2.2.25, and 2.4.x before 2.4.21, allows local users to gain root privileges by using ptrace to attach to a child process that is spawned by the kernel. This module exploits this vulnerability and if is sucessfull, install a new agent with root privileges.

Supported Systems:
    RedHat Linux 6.1 (i386)
    RedHat Linux 6.2 (i386)
    RedHat Linux 7 (i386)
    RedHat Linux 7.2 (i386)
    RedHat Linux 7.3 (i386)
    RedHat Linux 8 (i386)
    Debian Linux 3 (i386)
    Linux RedHat 6.1 (Linux kernel 2.2.12-20)
    Linux RedHat 6.2 (Linux kernel 2.2.14-5.0)
    Linux RedHat 7.0 (Linux kernel 2.2.16-22)
    Linux RedHat 7.2 (Linux kernel 2.4.7-10)
    Linux RedHat 7.3 (Linux kernel 2.4.18-3)
    Linux RedHat 8.0 (Linux kernel 2.4.18-14)
    Debian Linux 3 (Linux kernal 2.2.20)


This module is included in the latest version of CORE IMPACT, the first automated comprehensive penetration testing product for accurately identifying information security risks. Click here to learn more about the product.