EIP-2026-104584
PRE-CVEApple Mac OSX 10.4.7 (x86) - 'fetchmail' Local Privilege Escalation
Title source: legacyExploitation Summary
EIP tracks 1 public exploit for EIP-2026-104584. PoCs published by Kevin Finisterre.
AI-analyzed exploit summary This Perl script exploits a buffer overflow vulnerability in fetchmail (CVE-2006-147238) by sending a maliciously crafted UIDL response to trigger remote code execution. It sets up a fake POP3 server on port 1234 and delivers a payload that spawns a shell with elevated privileges (mail group).
Description
Apple Mac OSX 10.4.7 (x86) - 'fetchmail' Local Privilege Escalation
Exploits (1)
This Perl script exploits a buffer overflow vulnerability in fetchmail (CVE-2006-147238) by sending a maliciously crafted UIDL response to trigger remote code execution. It sets up a fake POP3 server on port 1234 and delivers a payload that spawns a shell with elevated privileges (mail group).