-
Notifications
You must be signed in to change notification settings - Fork 37
New issue
Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.
By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.
Already on GitHub? Sign in to your account
nullderef exploit does not work on my Qemu VM #1
Comments
Hi @mudongliang, I think it doesn't work because your kernel has a fix for this vulnerability. Best regards, |
Thanks very much. It is fixed in 5.0.0-rc8. I will try an old version and test it again. |
I would recommend checking https://www.root-me.org/en/Challenges/App-System/ Also feel free to send pull requests with new exploits to this repository! |
The UAF exploit is successfully launched on my Qemu VM and I see the uid changes to 0.
But for the second exploit, after applying the trick at [1], the NULL memory area is still not writable and then Segmentation fault occurs.
My configuration
Kernel version: 5.8.9
Command line: pti=off oops=panic ftrace_dump_on_oops nokaslr
Normal user: uid=1000, euid=1000
If you need any more information, please let me know.
The text was updated successfully, but these errors were encountered: