Skip to content

Authenticated 0-click RCE against Linux 6.1.45 for CVE-2023-52440 and CVE-2023-4130

Notifications You must be signed in to change notification settings

BitsByWill/ksmbd-n-day

Folders and files

NameName
Last commit message
Last commit date

Latest commit

 

History

1 Commit
 
 
 
 
 
 
 
 
 
 

Repository files navigation

README

This repo accompanies my research article Eternal-Tux: Crafting a Linux Kernel KSMBD 0-Click RCE Exploit from N-Days, in which I develop a POC for n-days from 2023: CVE-2023-52440 and CVE-2023-4130.

I provide the kernel .config, a kernel run script, an image build script, and the POC.

The image creation script comes from Syzkaller. The diff for impacket comes from commit 7561038277f4b08a16f37aac886cfe0193e75434.

This is solely for research purposes only. In fact, this POC was designed on an extremely out of date LTS kernel (6.1.45), on a custom kernel config, and on a custom build toolchain.

About

Authenticated 0-click RCE against Linux 6.1.45 for CVE-2023-52440 and CVE-2023-4130

Resources

Stars

Watchers

Forks

Releases

No releases published

Packages

No packages published