CVE-2022-2586
MEDIUM KEVLinux Kernel < 5.19.17 - Use-After-Free via NFT Object or Expression Reference
Title source: llmExploitation Summary
CVE-2022-2586 is actively exploited and listed in the CISA Known Exploited Vulnerabilities (KEV) catalog, added June 26, 2024. EIP tracks 3 public exploits from researchers including aels, sniper404ghostxploit.
AI-analyzed exploit summary This is a local privilege escalation (LPE) exploit for CVE-2022-2586, targeting a use-after-free (UAF) vulnerability in the Linux kernel's nft_object. The exploit leverages nftables operations to achieve arbitrary memory manipulation and ultimately gain root privileges.
Description
It was discovered that a nft object or expression could reference a nft set on a different nft table, leading to a use-after-free once that table was deleted.
Exploits (3)
This is a local privilege escalation (LPE) exploit for CVE-2022-2586, targeting a use-after-free (UAF) vulnerability in the Linux kernel's nft_object. The exploit leverages nftables operations to achieve arbitrary memory manipulation and ultimately gain root privileges.
This is a local privilege escalation (LPE) exploit for CVE-2022-2586, targeting a use-after-free (UAF) vulnerability in the Linux kernel's nft_object. It leverages memory corruption to achieve arbitrary code execution in kernel context, ultimately gaining root privileges.
This repository contains functional exploit code for CVE-2022-2586, a use-after-free (UAF) vulnerability in the Linux kernel's nf_tables subsystem. The PoC demonstrates the vulnerability by creating and manipulating nf_tables objects and sets to trigger the UAF condition, potentially leading to local privilege escalation (LPE).
References (15)
Scores
CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:U/C:N/I:L/A:H