Exploitation Summary
EIP tracks 1 public exploit for CVE-2015-8239. PoCs published by justinsteven.
AI-analyzed exploit summary This repository contains a functional proof-of-concept exploit for CVE-2015-8239, demonstrating a TOCTOU (Time-of-Check to Time-of-Use) race condition in sudo's Digest_Spec feature. The exploit uses inotify to detect file access and replace the target binary during execution, bypassing hash verification.
Description
The SHA-2 digest support in the sudoers plugin in sudo after 1.8.7 allows local users with write permissions to parts of the called command to replace them before it is executed.
Exploits (1)
This repository contains a functional proof-of-concept exploit for CVE-2015-8239, demonstrating a TOCTOU (Time-of-Check to Time-of-Use) race condition in sudo's Digest_Spec feature. The exploit uses inotify to detect file access and replace the target binary during execution, bypassing hash verification.
References (5)
Scores
CVSS:3.0/AV:L/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:H