Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

Notify operator that cleanup of crontab is required #12760

Merged
merged 1 commit into from Dec 26, 2019

Conversation

@bcoles
Copy link
Contributor

bcoles commented Dec 26, 2019

Warn the operator that the system will be permanently backdoored upon successful exploitation.

@busterb busterb self-assigned this Dec 26, 2019
@busterb

This comment has been minimized.

Copy link
Member

busterb commented Dec 26, 2019

This has a few other fixes, they look fine to me. Thanks @bcoles

busterb added a commit that referenced this pull request Dec 26, 2019
@busterb busterb merged commit a7b6355 into rapid7:master Dec 26, 2019
3 checks passed
3 checks passed
Metasploit Automation - Sanity Test Execution Successfully completed all tests.
Details
Metasploit Automation - Test Execution Successfully completed all tests.
Details
continuous-integration/travis-ci/pr The Travis CI build passed
Details
@busterb

This comment has been minimized.

Copy link
Member

busterb commented Dec 26, 2019

Release Notes

This improves the Linux bpf_priv_esc module to more accurately target vulnerable kernel versions as well as warning the user that manual cleanup of the added cron job is necessary post-exploitation.

msjenkins-r7 added a commit that referenced this pull request Dec 26, 2019
@bcoles bcoles deleted the bcoles:bpf_priv_esc branch Dec 26, 2019
@tperry-r7 tperry-r7 added the rn-fix label Jan 14, 2020
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Projects
None yet
3 participants
You can’t perform that action at this time.