logoalt Hacker News

kstrausertoday at 6:15 AM1 replyview on HN

Would xz still have been able to alter opensshd without IFUNC?


Replies

rwmjtoday at 10:12 AM

Yes, liblzma could have used multiple routes to take over sshd. Once you're running inside the process it's game over. The exact details, like how they used ifunc and an audit hook, are very interesting, but ultimately not that important.