Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1359 CNY

100%

CVE-2025-32462 PoC — Sudo 安全漏洞

Source
Associated Vulnerability
Title: Sudo 安全漏洞 (CVE-2025-32462)
Description:Sudo before 1.9.17p1, when used with a sudoers file that specifies a host that is neither the current host nor ALL, allows listed users to execute commands on unintended machines.
Description
A easy sudo poc by cryingn.
Readme
# CVE-2025-32462 – Sudo Privilege Escalation Verification Script

This is a verification script for **CVE‑2025‑32462** that requires sudo privileges for testing. It's primarily used for security investigations (I'm developing a security tool that will be publicly released after further improvements; for compatibility reference, check the `version.txt` format).

---

## File Structure

| File            | Description                                                                                                                                        |
| --------------- | -------------------------------------------------------------------------------------------------------------------------------------------------- |
| **Dockerfile**  | I attempted to create a vulnerable Docker environment file, but couldn't fully test it on this old computer. Feel free to try running it yourself. |
| **poc.sh**      | This is the vulnerability verification file for CVE-2025-32462. The matching mechanism isn't perfect yet, but it's sufficient for basic testing.   |
| **version.txt** | File used for version matching in the tool.                                                                                                        |

---

## Affected Versions

> Affected sudo versions range from 1.8.8 to 1.9.17, primarily impacting Linux systems.

---

## Usage

```bash
# 1 – clone repository
$ git clone https://github.com/cryingn/CVE-2025-32462.git
$ cd CVE-2025-32462

# 2 – build and run test environment
$ sudo ./poc.sh
```

## Notes

The use of `sudo` is only for conveniently identifying users with passwordless privileges. Actual privilege escalation doesn't require sudo permissions.

File Snapshot

Log in to view the POC file snapshot cached by Shenlong Bot

Log in to view
Remarks
    1. It is advised to access via the original source first.
    2. Local POC snapshots are reserved for subscribers — if the original source is unavailable, the local mirror is part of the paid plan.
    3. Mirroring, verifying, and maintaining this POC archive takes ongoing effort, so local snapshots are a paid feature. Your subscription keeps the archive online — thank you for the support. View subscription plans →