Hacker Newsnew | past | comments | ask | show | jobs | submitlogin

Pretty sure they did that as root, so they could get past that and explore how the program worked when being run as a non-root user. The final exploit doesn't depend on this program, though; it uses the same RPC interfaces this program does, from a separate program, so the patching was just part of their exploration, not part of the exploit.


Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: