Developer Finds DNS Field in Sonar App Could Execute Commands as Root
A security review of the open-source network tool Sonar revealed that its custom DNS resolver input field could be exploited to run arbitrary commands with root privileges. The flaw stemmed from passing unvalidated user input directly into a privileged shell call using networksetup, a system utility on macOS. The developer discovered the issue during a pre-release audit ahead of version 2 and fixed it by validating input against an allowlist of IPv4/IPv6 addresses and passing arguments as an array instead of a shell string. Several other vulnerabilities were also found, including CSV formula injection in network exports and insecure credential storage. The developer noted that such flaws arise not from ignorance but from insufficient scrutiny of input boundaries outside the main feature-building process.
This is an AI-generated summary. ShortSingh links to the original source for the complete article.
Discussion (0)
Log in to join the discussion and vote.
Log in