Skip to content

Commit 45fb4a7

Browse files
author
jenkins-metasploit
committed
automatic module_metadata_base.json update
1 parent 5374c7b commit 45fb4a7

File tree

1 file changed

+59
-0
lines changed

1 file changed

+59
-0
lines changed

db/modules_metadata_base.json

Lines changed: 59 additions & 0 deletions
Original file line numberDiff line numberDiff line change
@@ -92185,6 +92185,65 @@
9218592185

9218692186
]
9218792187
},
92188+
"exploit_linux/local/ubuntu_needrestart_lpe": {
92189+
"name": "Ubuntu needrestart Privilege Escalation",
92190+
"fullname": "exploit/linux/local/ubuntu_needrestart_lpe",
92191+
"aliases": [
92192+
92193+
],
92194+
"rank": 500,
92195+
"disclosure_date": "2024-11-19",
92196+
"type": "exploit",
92197+
"author": [
92198+
"h00die",
92199+
"makuga01",
92200+
"qualys"
92201+
],
92202+
"description": "Local attackers can execute arbitrary code as root by\n tricking needrestart into running the Python interpreter with an\n attacker-controlled PYTHONPATH environment variable.\n\n Verified against Ubuntu 22.04 with needrestart 3.5-5ubuntu2.1\n Attempted exploitation against Debian 12, expliotation failed",
92203+
"references": [
92204+
"URL-https://github.com/makuga01/CVE-2024-48990-PoC",
92205+
"URL-https://www.qualys.com/2024/11/19/needrestart/needrestart.txt",
92206+
"CVE-2024-48990"
92207+
],
92208+
"platform": "Linux",
92209+
"arch": "x86, x64",
92210+
"rport": null,
92211+
"autofilter_ports": [
92212+
92213+
],
92214+
"autofilter_services": [
92215+
92216+
],
92217+
"targets": [
92218+
"Auto"
92219+
],
92220+
"mod_time": "2025-01-09 16:23:09 +0000",
92221+
"path": "/modules/exploits/linux/local/ubuntu_needrestart_lpe.rb",
92222+
"is_install_path": true,
92223+
"ref_name": "linux/local/ubuntu_needrestart_lpe",
92224+
"check": true,
92225+
"post_auth": false,
92226+
"default_credential": false,
92227+
"notes": {
92228+
"Stability": [
92229+
"crash-safe"
92230+
],
92231+
"Reliability": [
92232+
"repeatable-session"
92233+
],
92234+
"SideEffects": [
92235+
"artifacts-on-disk"
92236+
]
92237+
},
92238+
"session_types": [
92239+
"shell",
92240+
"meterpreter"
92241+
],
92242+
"needs_cleanup": true,
92243+
"actions": [
92244+
92245+
]
92246+
},
9218892247
"exploit_linux/local/udev_netlink": {
9218992248
"name": "Linux udev Netlink Local Privilege Escalation",
9219092249
"fullname": "exploit/linux/local/udev_netlink",

0 commit comments

Comments
 (0)