Skip to content
KitploitKITPLOIT
ToolsExploitsBlog
Log in
Submit
ToolsExploitsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

··Feeds·Contact·Privacy·© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories
CVE-2025-32463-POC — 🛡️ Proof of Concept (PoC) for CVE-2025-32463 - Local privilege escalation in sudo (versions 1.9.14 to 1.9.17). This exploit abuses the --chroot option and a malicious nsswitch.conf to execute arbitrary code as root. ⚠️ For educational and authorized testing only. | Kitploit
Tools/GitHubGitHub/0p5cur/cve-2025-32463-poc
Privilege EscalationVulnerability AnalysisExploitationPenetration TestingLearning & EducationBinary Exploitation
GitHub0p5cur/cve-2025-32463-poc

CVE-2025-32463-POC

🛡️ Proof of Concept (PoC) for CVE-2025-32463 - Local privilege escalation in sudo (versions 1.9.14 to 1.9.17). This exploit abuses the --chroot option and a malicious nsswitch.conf to execute arbitrary code as root. ⚠️ For educational and authorized testing only.

View Repository
147 months agoNot yet reviewed

Most Popular

View all →

Discover the most used tools by our community.

Explore all tools

Browse our collection of tools

View all tools →
Share

CVE-2025-32463 - sudo Local Privilege Escalation (PoC)

MIT License PoC Visitors

⚠️ This repository contains a Proof of Concept (PoC) exploit for CVE-2025-32463
Intended only for educational purposes and use in authorized environments.


🧠 About the Vulnerability

CVE-2025-32463 is a local privilege escalation vulnerability affecting sudo versions 1.9.14 to 1.9.17.

The flaw resides in the way sudo handles the --chroot (-R) option introduced in 1.9.14. It allows an unprivileged user to craft a fake nsswitch.conf inside a controlled chroot path, forcing sudo (running as root) to load an arbitrary NSS library and execute code as root.


✅ Affected Versions

  • sudo ≥ 1.9.14 and < 1.9.17p1
  • Unaffected:
    • Versions < 1.9.14 (feature not present)
    • Versions ≥ 1.9.17p1 (vulnerability patched)

🚩 Requirements

  • A vulnerable version of sudo (see above)
  • gcc installed
  • The user can run sudo -R with an arbitrary directory (some setups restrict this)

🚀 Exploit Steps

  1. Clone this repository or just download the script
  2. Run the PoC script:

chmod +x CVE-2025-32463.sh && ./CVE-2025-32463.sh

📚 References

  • NVD Entry – CVE-2025-32463
  • Sudo security advisory
Download Tool