A Local Privilege Escalation flaw has been discovered in the latest version of Etcher <= v1.18.11 that allows an attacker with a low-privileged user account to create a directory named "etcher" under /tmp, when the Admin user runs Etcher in his session, the attacker can achieve LPE.
-
Notifications
You must be signed in to change notification settings - Fork 0
A Local Privilege Escalation flaw has been discovered in the latest version of Etcher <= v1.18.11 that allows an attacker with a low-privileged user account to create a directory named "etcher" under /tmp, when the Admin user runs Etcher in his session, the attacker can achieve LPE.
febin0x10/etcher_privesc_exploit
Folders and files
Name | Name | Last commit message | Last commit date | |
---|---|---|---|---|
Repository files navigation
About
A Local Privilege Escalation flaw has been discovered in the latest version of Etcher <= v1.18.11 that allows an attacker with a low-privileged user account to create a directory named "etcher" under /tmp, when the Admin user runs Etcher in his session, the attacker can achieve LPE.
Resources
Stars
Watchers
Forks
Releases
No releases published
Packages 0
No packages published