CVE-2012-0055
HIGHLinux Kernel < 3.0.0 - Missing Authorization in OverlayFS
Title source: llmExploitation Summary
EIP tracks 1 public exploit for CVE-2012-0055. PoCs published by Gary Poster.
AI-analyzed exploit summary This exploit leverages a local security-bypass vulnerability in OverlayFS (CVE-2012-0055) by manipulating cgroup device restrictions to bypass security policies. It demonstrates unauthorized device access via overlay mounts and cgroup configurations.
Description
OverlayFS in the Linux kernel before 3.0.0-16.28, as used in Ubuntu 10.0.4 LTS and 11.10, is missing inode security checks which could allow attackers to bypass security restrictions and perform unauthorized actions.
Exploits (1)
This exploit leverages a local security-bypass vulnerability in OverlayFS (CVE-2012-0055) by manipulating cgroup device restrictions to bypass security policies. It demonstrates unauthorized device access via overlay mounts and cgroup configurations.
References (7)
Scores
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H