Suggestion: Linux Kernel Runtime Guard (LKRG) Bypasses
bcoles opened this issue · comments
bcoles commented
Presume you would have seen this from a couple weeks ago.
Linux Kernel Runtime Guard (LKRG) bypass using usermodehelper [PoC, CVE-2017-1000112]
PoC only - no writeup. I haven't tested it. Exploit should look familiar ;)
Potentially a useful reference as the first (?) LKRG bypass demonstration.
Edit: Tested, and didn't work for me on Ubuntu 16.04.4 4.8.0-53-generic
, but willing to admit user error.
Andrey Konovalov commented
Sure, let's keep it as a useful reference. Added to the exploit section, thanks!