CVE-2022-32250
HIGHLinux Kernel 4.1-5.18.1 - Use-After-Free in nf_tables_api.c
Title source: llmExploitation Summary
EIP tracks 11 public exploits for CVE-2022-32250. PoCs published by theori-io, ysanatomic, seadragnol.
AI-analyzed exploit summary This repository contains a functional exploit for CVE-2022-32250, a Linux kernel local privilege escalation vulnerability caused by a use-after-free in the NFT_STATEFUL_EXPR check. The exploit leverages mqueue and keyring manipulation to achieve root privileges.
Description
net/netfilter/nf_tables_api.c in the Linux kernel through 5.18.1 allows a local user (able to create user/net namespaces) to escalate privileges to root because an incorrect NFT_STATEFUL_EXPR check leads to a use-after-free.
Exploits (11)
This repository contains a functional exploit for CVE-2022-32250, a Linux kernel local privilege escalation vulnerability caused by a use-after-free in the NFT_STATEFUL_EXPR check. The exploit leverages mqueue and keyring manipulation to achieve root privileges.
This repository contains a functional local privilege escalation (LPE) exploit for CVE-2022-32250, a Use-After-Free vulnerability in the Linux kernel's netfilter subsystem. The exploit demonstrates heap leaking, KASLR bypass, and modprobe_path overwrite to achieve root privileges on vulnerable systems.
This repository contains a functional exploit for CVE-2022-32250, a use-after-free vulnerability in the nf_tables subsystem of the Linux kernel. The exploit leverages the vulnerability to achieve local privilege escalation by manipulating netfilter sets and spraying kernel memory.
This repository contains a functional exploit for CVE-2022-32250, a Linux kernel vulnerability in nftables. It includes a Dockerized environment with a vulnerable kernel (5.15.44), a custom root filesystem, and an exploit that manipulates netfilter rules via netlink sockets and message queues to trigger the vulnerability.
This repository contains a functional exploit for CVE-2022-32250, targeting a Linux kernel vulnerability. It includes GDB scripts for memory analysis, kernel module code, and an exploit binary designed to achieve local privilege escalation (LPE).
This repository contains a functional exploit for CVE-2022-32250, a Linux kernel vulnerability in the nf_tables subsystem. The exploit leverages netlink messages to manipulate kernel memory and achieve privilege escalation via a ROP chain.
This repository contains a functional exploit for CVE-2022-32250, a Linux kernel local privilege escalation vulnerability caused by a use-after-free in the NFT_STATEFUL_EXPR check. The exploit leverages keyring manipulation and message queue spraying to achieve arbitrary memory corruption and privilege escalation.
The repository contains documentation and scripts related to Linux kernel ABI, ATA over Ethernet (AoE), and other kernel features. No exploit code or offensive techniques are present.
References (18)
Scores
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H