2012.01.23 - /proc/mem exploit

few days ago i came across information about error in the way kernel handled access to mem file of the processes, when running sudo applications. didn't have to wait long to see working exploit. description is worth reading for at least two reasons - it's up to date event and each step is shown and explained in the detail. another nice thing, except for the exploit itself, is the source of the shellcode (both 64-bit and 32-bit).

enjoy reading, have a nice time patching… ;)

