Skip to content

feature: screen - CVE-2023-24626 - privilege escalation #125

@hyde-repo

Description

@hyde-repo

Add CVE-2023-24626 to the inventory.

When GNU Screen is installed with setuid or setgid (common on Linux/FreeBSD), local users can abuse its UNIX domain socket to send a privileged SIGHUP to any PID. This allows them to terminate arbitrary processes, causing a denial of service or disruption.

Section: ctf/system/screen/
Type: local privilege escalation / denial of service

Metadata

Metadata

Assignees

Projects

No projects

Milestone

No milestone

Relationships

None yet

Development

No branches or pull requests

Issue actions