Skip to main content

Methodology


Linux Exploit Suggester

linux-exploit-suggester-2 (Perl)


CVE-2022-0847 — DirtyPipe (Kernel 5.8 - 5.16.11)

Overwrite read-only files via pipe splice. Instant root.

Check

Exploit

Alternative (SUID method):

CVE-2016-5195 — DirtyCow (Kernel 2.6.22 - 4.8.2)

Race condition in copy-on-write. Write to read-only mappings.

Check

Exploit — Overwrite /etc/passwd

Exploit — SUID Method


CVE-2021-4034 — PwnKit (pkexec)

Polkit pkexec local privilege escalation. Works on almost all Linux distros.

Check

Exploit

C version:

CVE-2021-3493 — OverlayFS (Ubuntu)

Ubuntu kernel overlay filesystem privilege escalation.

CVE-2022-2588 — Dirty Cred (Kernel 5.x)


CVE-2023-0386 — OverlayFS (Kernel < 6.2)


Compile on Attacker (Cross-Compile)

If target has no gcc:
On target:

Quick Reference