CVE-2021-3493

HIGH KEV

2021 Ubuntu Overlayfs LPE

Title source: metasploit

Description

The overlayfs implementation in the linux kernel did not properly validate with respect to user namespaces the setting of file capabilities on files in an underlying file system. Due to the combination of unprivileged user namespaces along with a patch carried in the Ubuntu kernel to allow unprivileged overlay mounts, an attacker could use this to gain elevated privileges.

Exploits (24)

nomisec WORKING POC 435 stars
by briskets · local
https://github.com/briskets/CVE-2021-3493
nomisec WORKING POC 39 stars
by inspiringz · local
https://github.com/inspiringz/CVE-2021-3493
nomisec WORKING POC 3 stars
by oneoy · local
https://github.com/oneoy/CVE-2021-3493
nomisec WORKING POC 1 stars
by fei9747 · local
https://github.com/fei9747/CVE-2021-3493
nomisec WORKING POC 1 stars
by cerodah · local
https://github.com/cerodah/overlayFS-CVE-2021-3493
nomisec WORKING POC
by iqbalhussainas · local
https://github.com/iqbalhussainas/OverlayFS-LPE-Exploit
nomisec WORKING POC
by Psychopath-Traveler · local
https://github.com/Psychopath-Traveler/CVE-2021-3493
nomisec WORKING POC
by George-Yanni · local
https://github.com/George-Yanni/DeepRoot
nomisec WORKING POC
by cyberx-1 · local
https://github.com/cyberx-1/OverlayFS-CVE-2021-3493
nomisec WORKING POC
by spideyctf · local
https://github.com/spideyctf/UbuntuTouchSecurityVAPTReport
nomisec WORKING POC
by Sornphut · local
https://github.com/Sornphut/OverlayFS---CVE-2021-3493
nomisec WRITEUP
by fathallah17 · poc
https://github.com/fathallah17/OverlayFS-CVE-2021-3493
nomisec WORKING POC
by iamz24 · local
https://github.com/iamz24/CVE-2021-3493_CVE-2022-3357
nomisec WORKING POC
by ptkhai15 · local
https://github.com/ptkhai15/OverlayFS---CVE-2021-3493
nomisec WORKING POC
by smallkill · local
https://github.com/smallkill/CVE-2021-3493
nomisec WORKING POC
by pmihsan · poc
https://github.com/pmihsan/OverlayFS-CVE-2021-3493
nomisec WORKING POC
by puckiestyle · poc
https://github.com/puckiestyle/CVE-2021-3493
nomisec WORKING POC
by derek-turing · local
https://github.com/derek-turing/CVE-2021-3493
nomisec WORKING POC
by Abdennour-py · local
https://github.com/Abdennour-py/CVE-2021-3493
metasploit WORKING POC
by g1vi, h00die, bwatters-r7, gardnerapp · rubypoc
https://github.com/rapid7/metasploit-framework/blob/master/modules/exploits/linux/local/gameoverlay_privesc.rb
vulncheck_xdb WORKING POC
local
https://github.com/massco99/Analytics-htb-Rce
metasploit WORKING POC GREAT
by ssd-disclosure, bwatters-r7 · rubypoc
https://github.com/rapid7/metasploit-framework/blob/master/modules/exploits/linux/local/cve_2021_3493_overlayfs.rb

Scores

CVSS v3 8.8
EPSS 0.7524
EPSS Percentile 98.9%
Attack Vector LOCAL
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:C/C:H/I:H/A:H

Details

CISA KEV 2022-10-20
VulnCheck KEV 2022-10-20
InTheWild.io 2022-09-06
ENISA EUVD EUVD-2021-26815
CWE
CWE-270 CWE-863
Status published
Products (2)
canonical/ubuntu_linux < 18.04
canonical/ubuntu_linux < 20.10
Published Apr 17, 2021
KEV Added Oct 20, 2022
Tracked Since Feb 18, 2026