## https://sploitus.com/exploit?id=3C3D8281-560A-553C-BE53-A35C70F5EAFA
# π¨ PoC: CVE-2025-32463 β Sudo chroot Escape Vulnerability
> A critical vulnerability affecting `sudo` versions **1.9.0 to 1.9.17p1**, allowing users to escape from `chroot` and gain access to the real root filesystem.
## π Description
CVE-2025-32463 is a **local privilege escalation** vulnerability in `sudo` that enables users with specific `sudoers` configurations to escape a `chroot` jail and access the host systemβs root directory.
### π₯ Impact
If your `/etc/sudoers` contains lines such as:
some_user ALL=(ALL:ALL) CHROOT=/path/to/jail /path/to/elf-binary
Then your system is potentially **vulnerable**.
## π§ͺ Proof of Concept (PoC)
This repository demonstrates a working Proof of Concept to exploit the vulnerability.
> β οΈ This PoC is for **educational and research purposes only**. Use responsibly and only in environments you own or have explicit permission to test.

### β
Requirements
- Vulnerable version of `sudo` (1.9.0 to 1.9.17p1)
- User with chroot sudoers configuration
- ELF binary permitted in the chroot context
### π Usage
1. Clone this repository:
```bash
git clone https://github.com/your-username/CVE-2025-32463-PoC.git
cd CVE-2025-32463-PoC
chmod +x CVE-2025-32463.sh
./CVE-2025-32463.sh
Read the exploit code and adapt it as needed for your environment.
Execute the PoC under the chrooted sudo environment.
π‘οΈ Mitigation
To protect your systems:
- Update sudo to version 1.9.17p2 or later
- Review /etc/sudoers, especially entries involving CHROOT=
π References
- [Sudo Security Advisory](https://www.sudo.ws/security/advisories/)
- [CVE-2025-32463](https://vulners.com/cve/CVE-2025-32463)
β οΈ Disclaimer
This project is licensed under the MIT License. This PoC is provided as-is, with no guarantees or warranties. Use at your own risk.