CVE-2015-1328

HIGH EXPLOITED

Linux kernel <3.19.0-21.21 - Privilege Escalation

Title source: llm

Description

The overlayfs implementation in the linux (aka Linux kernel) package before 3.19.0-21.21 in Ubuntu through 15.04 does not properly check permissions for file creation in the upper filesystem directory, which allows local users to obtain root access by leveraging a configuration in which overlayfs is permitted in an arbitrary mount namespace.

Exploits (14)

exploitdb WORKING POC VERIFIED
by Metasploit · rubylocallinux
https://www.exploit-db.com/exploits/40688
exploitdb WORKING POC VERIFIED
by rebel · textlocallinux
https://www.exploit-db.com/exploits/37293
exploitdb WORKING POC VERIFIED
by rebel · clocallinux
https://www.exploit-db.com/exploits/37292
nomisec WORKING POC 10 stars
by elit3pwner · local
https://github.com/elit3pwner/CVE-2015-1328-GoldenEye
nomisec WORKING POC
by 0xf1d0 · local
https://github.com/0xf1d0/CVE-2015-1328
nomisec WRITEUP
by thieveshkar · poc
https://github.com/thieveshkar/RootQuest-CTF-Box-Multi-Stage-Exploitation-VM
nomisec WORKING POC
by 1mgR00T · local
https://github.com/1mgR00T/CVE-2015-1328
nomisec WORKING POC
by YastrebX · local
https://github.com/YastrebX/CVE-2015-1328
nomisec NO CODE
by BlackFrog-hub · poc
https://github.com/BlackFrog-hub/cve-2015-1328
nomisec NO CODE
by notlikethis · poc
https://github.com/notlikethis/CVE-2015-1328
nomisec NO CODE
by SR7-HACKING · poc
https://github.com/SR7-HACKING/LINUX-VULNERABILITY-CVE-2015-1328
metasploit WORKING POC GOOD
by h00die <[email protected]>, rebel · rubypoc
https://github.com/rapid7/metasploit-framework/blob/master/modules/exploits/linux/local/overlayfs_priv_esc.rb

Scores

CVSS v3 7.8
EPSS 0.8953
EPSS Percentile 99.6%
Attack Vector LOCAL
CVSS:3.0/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H

Details

VulnCheck KEV 2021-08-19
CWE
CWE-264
Status published
Products (2)
canonical/ubuntu_linux < 15.04
linux/linux_kernel < 3.19
Published Nov 28, 2016
Tracked Since Feb 18, 2026