Xbalien / CVE-2022-0847-DirtyPipe-Exploit

A root exploit for CVE-2022-0847

Geek Repo:Geek Repo

Github PK Tool:Github PK Tool

What is this

This is Max Kellermann's exploit POC for DirtyPipe, but modified to overwrite root's password field in /etc/passwd and restore after popping a shell.

How to use this

Run ./compile.sh then ./exploit and it'll pop a root shell.

su: must be run from a terminal

  1. If you get this error message, login as root with the password aaron.
  2. Then, restore /etc/passwd by running mv /tmp/passwd.bak /etc/passwd

(oops sorry my laptop battery is dying and my charger broke so I don't have time to fix this the right now, sorry)

About

A root exploit for CVE-2022-0847

License:GNU General Public License v2.0


Languages

Language:C 99.3%Language:Shell 0.7%