metasploit-framework/modules/exploits/linux/local
Jack Heysel bf0d81db03
Land #18838, Improve Runc Priv Esc Check
This PR adds support for Debian and number of fixes and improvements for
the runc_cwd_priv_esc. Proir to this fix the module would report
vulnerable for a number of versions that the patch had been back ported
to.
2024-03-18 13:31:09 -07:00
..
abrt_raceabrt_priv_esc.rb Add Meterpreter compatibility metadata 2021-10-06 13:54:51 +01:00
abrt_sosreport_priv_esc.rb modules: Check datastore ForceExploit before checking if session is root 2023-02-02 18:17:02 +11:00
af_packet_chocobo_root_priv_esc.rb modules: Check datastore ForceExploit before checking if session is root 2023-02-02 18:17:02 +11:00
af_packet_packet_set_ring_priv_esc.rb modules: Check datastore ForceExploit before checking if session is root 2023-02-02 18:17:02 +11:00
ansible_node_deployer.rb ansible review 2024-01-15 17:18:49 -05:00
apport_abrt_chroot_priv_esc.rb Update to using the AutoCheck mixin 2021-07-08 09:03:42 -04:00
apt_package_manager_persistence.rb replace strings with bools 2020-01-14 20:47:27 -05:00
asan_suid_executable_priv_esc.rb Removed default empty string for SUID_EXECUTABLE 2024-01-23 14:21:58 -05:00
autostart_persistence.rb Convert disclosure dates to iso8601 2020-10-02 21:00:37 +01:00
bash_profile_persistence.rb bash_profile_persistence: Add notes and resolve rubocop violations 2021-12-24 03:06:37 +00:00
blueman_set_dhcp_handler_dbus_priv_esc.rb modules: Check datastore ForceExploit before checking if session is root 2023-02-02 18:17:02 +11:00
bpf_priv_esc.rb modules: Check datastore ForceExploit before checking if session is root 2023-02-02 18:17:02 +11:00
bpf_sign_extension_priv_esc.rb modules: Check datastore ForceExploit before checking if session is root 2023-02-02 18:17:02 +11:00
cpi_runrshell_priv_esc.rb Register payload for cleanup 2019-06-10 11:20:25 -05:00
cron_persistence.rb Convert disclosure dates to iso8601 2020-10-02 21:00:37 +01:00
cve_2021_3490_ebpf_alu32_bounds_check_lpe.rb modules: Check datastore ForceExploit before checking if session is root 2023-02-02 18:17:02 +11:00
cve_2021_3493_overlayfs.rb modules: Check datastore ForceExploit before checking if session is root 2023-02-02 18:17:02 +11:00
cve_2021_4034_pwnkit_lpe_pkexec.rb modules: Check datastore ForceExploit before checking if session is root 2023-02-02 18:17:02 +11:00
cve_2021_38648_omigod.rb Update the Python exploit code to fix a bug 2021-11-02 10:10:18 -04:00
cve_2022_0847_dirtypipe.rb modify docs to reflect changes, remove 'return' 2022-03-10 10:39:32 -06:00
cve_2022_0995_watch_queue.rb modules: Check datastore ForceExploit before checking if session is root 2023-02-02 18:17:02 +11:00
cve_2022_1043_io_uring_priv_esc.rb reduces code duplication 2023-04-04 10:27:11 +01:00
desktop_privilege_escalation.rb Use zeitwerk for lib/msf/core folder 2020-12-07 10:31:45 +00:00
diamorphine_rootkit_signal_priv_esc.rb modules: Check datastore ForceExploit before checking if session is root 2023-02-02 18:17:02 +11:00
docker_cgroup_escape.rb review comments, adding new payloads 2023-12-01 16:06:48 -05:00
docker_daemon_privilege_escalation.rb modules: Check datastore ForceExploit before checking if session is root 2023-02-02 18:17:02 +11:00
docker_privileged_container_escape.rb Add module notes 2023-02-08 15:46:07 +00:00
docker_runc_escape.rb Update from review 2021-06-30 18:13:35 +02:00
exim4_deliver_message_priv_esc.rb modules: Check datastore ForceExploit before checking if session is root 2023-02-02 18:17:02 +11:00
f5_create_user.rb Get rid of #String.hash in favour of UnixCrypt 2023-02-01 11:02:04 -08:00
glibc_ld_audit_dso_load_priv_esc.rb check files exist before suid checking them 2022-10-05 19:43:07 -04:00
glibc_origin_expansion_priv_esc.rb use more Post::File functions 2022-10-08 09:50:25 -04:00
glibc_realpath_priv_esc.rb modules: Check datastore ForceExploit before checking if session is root 2023-02-02 18:17:02 +11:00
glibc_tunables_priv_esc.rb Add a way to get the buildid via perf 2023-12-29 17:24:27 +01:00
hp_smhstart.rb Use zeitwerk for lib/msf/core folder 2020-12-07 10:31:45 +00:00
hp_xglance_priv_esc.rb modules: Check datastore ForceExploit before checking if session is root 2023-02-02 18:17:02 +11:00
juju_run_agent_priv_esc.rb Convert disclosure dates to iso8601 2020-10-02 21:00:37 +01:00
kloxo_lxsuexec.rb Use zeitwerk for lib/msf/core folder 2020-12-07 10:31:45 +00:00
ktsuss_suid_priv_esc.rb modules: Check datastore ForceExploit before checking if session is root 2023-02-02 18:17:02 +11:00
lastore_daemon_dbus_priv_esc.rb modules: Check datastore ForceExploit before checking if session is root 2023-02-02 18:17:02 +11:00
libuser_roothelper_priv_esc.rb modules: Check datastore ForceExploit before checking if session is root 2023-02-02 18:17:02 +11:00
nested_namespace_idmap_limit_priv_esc.rb modules: Check datastore ForceExploit before checking if session is root 2023-02-02 18:17:02 +11:00
netfilter_nft_set_elem_init_privesc.rb Update ranking for nft_set_elem_init 2022-09-30 09:57:54 -05:00
netfilter_priv_esc_ipv4.rb Convert disclosure dates to iso8601 2020-10-02 21:00:37 +01:00
netfilter_xtables_heap_oob_write_priv_esc.rb Modules: Prefer CVE references over cve.mitre.org URL references 2022-04-19 20:42:23 +00:00
network_manager_vpnc_username_priv_esc.rb modules: Check datastore ForceExploit before checking if session is root 2023-02-02 18:17:02 +11:00
ntfs3g_priv_esc.rb Convert disclosure dates to iso8601 2020-10-02 21:00:37 +01:00
omniresolve_suid_priv_esc.rb modules: Check datastore ForceExploit before checking if session is root 2023-02-02 18:17:02 +11:00
overlayfs_priv_esc.rb Handle nil versions for rubygems 4 2021-02-25 16:47:49 +00:00
pihole_remove_commands_lpe.rb Update PiHole module to not wait for sudo input 2022-05-04 17:24:43 +01:00
pkexec.rb Handle nil versions for rubygems 4 2021-02-25 16:47:49 +00:00
polkit_dbus_auth_bypass.rb Fixes #17227 - polkit_dbus_auth_bypass module when run from a command shell 2022-11-25 15:13:57 +11:00
ptrace_sudo_token_priv_esc.rb modules: Check datastore ForceExploit before checking if session is root 2023-02-02 18:17:02 +11:00
ptrace_traceme_pkexec_helper.rb modules: Check datastore ForceExploit before checking if session is root 2023-02-02 18:17:02 +11:00
rc_local_persistence.rb Convert disclosure dates to iso8601 2020-10-02 21:00:37 +01:00
rds_atomic_free_op_null_pointer_deref_priv_esc.rb modules: Check datastore ForceExploit before checking if session is root 2023-02-02 18:17:02 +11:00
rds_rds_page_copy_user_priv_esc.rb modules: Check datastore ForceExploit before checking if session is root 2023-02-02 18:17:02 +11:00
recvmmsg_priv_esc.rb modules: Check datastore ForceExploit before checking if session is root 2023-02-02 18:17:02 +11:00
reptile_rootkit_reptile_cmd_priv_esc.rb modules: Check datastore ForceExploit before checking if session is root 2023-02-02 18:17:02 +11:00
runc_cwd_priv_esc.rb Merge branch 'runc_priv_esc' of github.com:SickMcNugget/metasploit-framework into runc_priv_esc 2024-03-11 22:23:55 +08:00
saltstack_salt_minion_deployer.rb salt review 2024-01-10 17:19:58 -05:00
service_persistence.rb Fix option collision in `service_persistence` 2024-02-03 23:18:45 +08:00
servu_ftp_server_prepareinstallation_priv_esc.rb modules: Check datastore ForceExploit before checking if session is root 2023-02-02 18:17:02 +11:00
sock_sendpage.rb modules: Check datastore ForceExploit before checking if session is root 2023-02-02 18:17:02 +11:00
sophos_wpa_clear_keys.rb Convert disclosure dates to iso8601 2020-10-02 21:00:37 +01:00
su_login.rb Add module notes 2023-02-08 15:46:07 +00:00
sudo_baron_samedit.rb Run rubocop on exploit modules 2023-02-08 15:20:32 +00:00
sudoedit_bypass_priv_esc.rb stronger grep 2023-05-16 16:18:14 -04:00
systemtap_modprobe_options_priv_esc.rb modules: Check datastore ForceExploit before checking if session is root 2023-02-02 18:17:02 +11:00
tomcat_rhel_based_temp_priv_esc.rb review comment 2023-03-13 14:42:26 -04:00
tomcat_ubuntu_log_init_priv_esc.rb correct cleanup and stabilization 2023-02-05 08:15:38 -05:00
ubuntu_enlightenment_mount_priv_esc.rb modules: Check datastore ForceExploit before checking if session is root 2023-02-02 18:17:02 +11:00
udev_netlink.rb Add Meterpreter compatibility metadata 2021-10-06 13:54:51 +01:00
ueb_bpserverd_privesc.rb Convert disclosure dates to iso8601 2020-10-02 21:00:37 +01:00
ufo_privilege_escalation.rb modules: Check datastore ForceExploit before checking if session is root 2023-02-02 18:17:02 +11:00
vcenter_java_wrapper_vmon_priv_esc.rb better check for vmon 2023-12-19 19:01:45 -05:00
vmware_alsa_config.rb modules: Check datastore ForceExploit before checking if session is root 2023-02-02 18:17:02 +11:00
vmware_mount.rb review comments 2022-10-08 09:16:57 -04:00
vmware_workspace_one_access_certproxy_lpe.rb tests passing 2023-04-04 10:24:09 +01:00
vmware_workspace_one_access_cve_2022_22960.rb Removed unnecessary require statement 2023-04-18 18:05:11 -04:00
vmwgfx_fd_priv_esc.rb modules: Check datastore ForceExploit before checking if session is root 2023-02-02 18:17:02 +11:00
yum_package_manager_persistence.rb replace strings with bools 2020-01-14 20:47:27 -05:00
zimbra_postfix_priv_esc.rb Resolve feedback - get rid of unnecessary directory, add CVE number, let the user choose the path 2022-10-17 15:00:56 -07:00
zimbra_slapper_priv_esc.rb Update zimbra_slapper_priv_esc.rb 2023-03-27 16:46:07 +01:00
zpanel_zsudo.rb Use zeitwerk for lib/msf/core folder 2020-12-07 10:31:45 +00:00
zyxel_suid_cp_lpe.rb Initial commit of CVE-2022-30526 LPE 2022-07-19 03:29:11 -07:00