Sliver C2 框架 1.7.7 及更早版本存在一个未处理的 panic 漏洞,位于操作员 gRPC 处理程序中。攻击者若控制了已被攻陷的植入体(implant),可以通过返回畸形或空的 Download 响应,导致整个 teamserver 崩溃。 具体来说,攻击者可以通过恶意的植入体会话发送零长度或仅包含 1 至 3 字节的数据载荷,从而触发 vendored 的 Binject 库中 BinaryMagic 函数发生的越界切片访问异常。该异常在操作员 gRPC 拦截器链中未被捕获和恢复,最终导致服务器进程
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POCNo comments yet