Sploitus

Exploit for CVE-2024-6387_poc

kitploit · 2026-08-25

Exploit Code

MARKDOWN19 lines
## https://sploitus.com/exploit?id=KITPLOIT:TOOLS-GITHUB-JOCKER2410-CVE-2024-6387_POC
# إثبات المفهوم (PoC) لـ CVE-2024-6387

## الوصف

يحتوي هذا المستودع على إثبات مفهوم (PoC) للثغرة CVE-2024-6387، التي تستهدف حالة سباق في معالج الإشارات في خادم OpenSSH (sshd) على أنظمة Linux المبنية على glibc. تسمح هذه الثغرة بتنفيذ كود عن بُعد بصلاحيات الجذر (root) من خلال استدعاء دوال غير آمنة للإشارات غير المتزامنة في معالج SIGALRM.

قم باستنساخ المستودع واستخدم:

root@kitploit:~
    
    
       git clone https://github.com/jocker2410/CVE-2024-6387_poc.git && cd CVE-2024-6387_poc
       # adapt the ip-addr.list file and insert the appropriate IP address. Please note the spelling, you must either insert simple IPv4 addresses or with port separated by a colon.
       
       python3 CVE-2024-6387_poc.py
    

🚀 اختبر نظامك الخاص فقط واستمتع به ;) 🚀