CVE-2019-17080
HIGHmintinstall 7.9.9 - Remote Code Execution via Untrusted REVIEWS_CACHE Deserialization
Title source: llmExploitation Summary
EIP tracks 3 public exploits for CVE-2019-17080. PoCs published by İbrahim Hakan Şeker, Andhrimnirr, materaj2.
AI-analyzed exploit summary This exploit leverages an object injection vulnerability in mintinstall (Software Manager) by writing a malicious payload to a cache file, which executes arbitrary commands when mintinstall is launched. The payload initiates a reverse shell via netcat.
Description
mintinstall (aka Software Manager) 7.9.9 for Linux Mint allows code execution if a REVIEWS_CACHE file is controlled by an attacker, because an unpickle occurs. This is resolved in 8.0.0 and backports.
Exploits (3)
This exploit leverages an object injection vulnerability in mintinstall (Software Manager) by writing a malicious payload to a cache file, which executes arbitrary commands when mintinstall is launched. The payload initiates a reverse shell via netcat.
This repository contains a functional exploit for CVE-2019-17080, leveraging insecure deserialization in Linux Mint's software manager (mintinstall) via a malicious pickle payload. The exploit writes a crafted payload to the reviews.cache file, which executes arbitrary code when mintinstall deserializes it.
This repository contains a functional exploit for CVE-2019-17080, leveraging insecure deserialization in Linux Mint's software manager (mintinstall) via a malicious pickle payload. The exploit writes a reverse shell payload to the reviews.cache file, which is then executed when the software manager deserializes the file.
References (4)
Scores
CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H