EIP-2026-104579
PRE-CVEApple Mac OSX 10.10 - 'DYLD_PRINT_TO_FILE' Local Privilege Escalation
Title source: legacyExploitation Summary
EIP tracks 1 public exploit for EIP-2026-104579. PoCs published by Stefan Esser.
AI-analyzed exploit summary This exploit leverages the DYLD_PRINT_TO_FILE environment variable vulnerability in OS X 10.10 - 10.10.4 to achieve local privilege escalation by overwriting a SUID binary with malicious code. It uses crontab -e to trigger the vulnerability and replace /usr/bin/newgrp with a SUID root shell.
Description
Apple Mac OSX 10.10 - 'DYLD_PRINT_TO_FILE' Local Privilege Escalation
Exploits (1)
This exploit leverages the DYLD_PRINT_TO_FILE environment variable vulnerability in OS X 10.10 - 10.10.4 to achieve local privilege escalation by overwriting a SUID binary with malicious code. It uses crontab -e to trigger the vulnerability and replace /usr/bin/newgrp with a SUID root shell.