NA

CVE-2022-37706

Published: 25/12/2022 Updated: 04/01/2023
CVSS v3 Base Score: 7.8 | Impact Score: 5.9 | Exploitability Score: 1.8
VMScore: 0

Vulnerability Summary

enlightenment_sys in Enlightenment prior to 0.25.4 allows local users to gain privileges because it is setuid root, and the system library function mishandles pathnames that begin with a /dev/.. substring.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

enlightenment enlightenment

Vendor Advisories

Maher Azzouzi discovered that missing input sanitising in the Enlightenment window manager may result in local privilege escalation to root For the stable distribution (bullseye), this problem has been fixed in version 0242-8+deb11u1 We recommend that you upgrade your e17 packages For the detailed security status of e17 please refer to its sec ...

Exploits

This Metasploit module exploits a command injection within Enlightenment's enlightenment_sys binary This is done by calling the mount command and feeding it paths which meet all of the system requirements, but execute a specific path as well due to a semi-colon being used This module was tested on Ubuntu 22041 X64 Desktop with enlightenment 02 ...
Enlightenment version 0253 suffers from a local privilege escalation vulnerability ...

Github Repositories

A reliable exploit + write-up to elevate privileges to root. (Tested on Ubuntu 22.04)

CVE-2022-37706 Hello guys, this time I'm gonna talk about a recent 0-day I found in one of the mai

All Credit to MaherAzzouzi (https://github.com/MaherAzzouzi/CVE-2022-37706-LPE-exploit). This is a copy of the exploit for CTFs

CVE-2022-37706 Exploit for CVE-2022-37706, a 0-day in one of the main window managers of Linux - Enlightenment (wwwenlightenmentorg/) All Credit to MaherAzzouzi (githubcom/MaherAzzouzi/CVE-2022-37706-LPE-exploit) This is a copy of the exploit for CTFs twittercom/maherazz2/status/1569665311707734023

CVE-2022-37706 Hello guys, this time I'm gonna talk about a recent 0-day I found in one of the mai

CVE-2022-37706 Hello guys, this time I'm gonna talk about a recent 0-day I found in one of the mai