Files
CVEs-PoC/2021/CVE-2021-41073.md
T
2024-05-25 21:48:12 +02:00

47 lines
2.2 KiB
Markdown

### [CVE-2021-41073](https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2021-41073)
![](https://img.shields.io/static/v1?label=Product&message=n%2Fa&color=blue)
![](https://img.shields.io/static/v1?label=Version&message=n%2Fa&color=blue)
![](https://img.shields.io/static/v1?label=Vulnerability&message=n%2Fa&color=brighgreen)
### Description
loop_rw_iter in fs/io_uring.c in the Linux kernel 5.10 through 5.14.6 allows local users to gain privileges by using IORING_OP_PROVIDE_BUFFERS to trigger a free of a kernel buffer, as demonstrated by using /proc/<pid>/maps for exploitation.
### POC
#### Reference
- https://git.kernel.org/pub/scm/linux/kernel/git/torvalds/linux.git/commit/?id=16c8d2df7ec0eed31b7d3b61cb13206a7fb930cc
#### Github
- https://github.com/ARPSyndicate/cvemon
- https://github.com/Ch4nc3n/PublicExploitation
- https://github.com/DarkFunct/CVE_Exploits
- https://github.com/JlSakuya/Linux-Privilege-Escalation-Exploits
- https://github.com/NaInSec/CVE-PoC-in-GitHub
- https://github.com/SYRTI/POC_to_review
- https://github.com/Snoopy-Sec/Localroot-ALL-CVE
- https://github.com/WhooAmii/POC_to_review
- https://github.com/bsauce/kernel-exploit-factory
- https://github.com/bsauce/kernel-security-learning
- https://github.com/chompie1337/Linux_LPE_io_uring_CVE-2021-41073
- https://github.com/kdn111/linux-kernel-exploitation
- https://github.com/khanhdn111/linux-kernel-exploitation
- https://github.com/khanhdz-06/linux-kernel-exploitation
- https://github.com/khanhdz191/linux-kernel-exploitation
- https://github.com/khanhhdz/linux-kernel-exploitation
- https://github.com/khanhhdz06/linux-kernel-exploitation
- https://github.com/khanhnd123/linux-kernel-exploitation
- https://github.com/knd06/linux-kernel-exploitation
- https://github.com/ndk191/linux-kernel-exploitation
- https://github.com/nomi-sec/PoC-in-GitHub
- https://github.com/smallkirby/seccamp23c2-assets
- https://github.com/soosmile/POC
- https://github.com/ssr-111/linux-kernel-exploitation
- https://github.com/star-sg/CVE
- https://github.com/trhacknon/CVE2
- https://github.com/trhacknon/Pocingit
- https://github.com/xairy/linux-kernel-exploitation
- https://github.com/zecool/cve
- https://github.com/zzcentury/PublicExploitation