skysider/VulnPOC

Fake

Closed this issue · 1 comments

This is an overhyped fake exploit and advisory. Even your 1-version rce takes hours to succeed, if ever with a glibc from 2003. Back in the days we owned sourceforge.net with exim exploits and many many more. These script kiddies nowadays only want to show off, see https://devco.re/blog/2018/03/06/exim-off-by-one-RCE-exploiting-CVE-2018-6789-en/. Every heard of REAL 0day?

The exploit script only works in the docker environment as I've mentioned in README and I've referenced meh's article about exploit method. And I share the exploit just for study purpose because it surely doesn't work in real world in almost all cases.