¡¾Îó²îͨ¸æ¡¿Linux KernelÍâµØÌáȨÎó²î£¨CVE-2022-0847£©

Ðû²¼Ê±¼ä 2022-03-08

0x00 Îó²î¸ÅÊö

CVE   ID

CVE-2022-0847

ʱ    ¼ä

2022-03-07

Àà    ÐÍ

LPE

µÈ    ¼¶

ÑÏÖØ

Ô¶³ÌʹÓÃ

·ñ

Ó°Ïì¹æÄ£


¹¥»÷ÖØÆ¯ºó


Óû§½»»¥


PoC/EXP

ÒѹûÕæ

ÔÚҰʹÓÃ


 

0x01 Îó²îÏêÇé

£³Ô£·ÈÕ£¬£¬£¬£¬ £¬£¬Ñо¿Ö°Ô±¹ûÕæÅû¶ÁËLinux ÄÚºËÖеÄÒ»¸öȨÏÞÌáÉýÎó²î£¨CVE-2022-0847£¬£¬£¬£¬ £¬£¬Ò²³ÆÎª¡°Dirty Pipe¡±£©£¬£¬£¬£¬ £¬£¬ÔÊÐí·ÇÌØÈ¨Óû§×¢ÈëºÍÁýÕÖí§ÒâÖ»¶ÁÎļþÖеÄÊý¾Ý£¬£¬£¬£¬ £¬£¬µ¼ÖÂȨÏÞÌáÉý£¬£¬£¬£¬ £¬£¬²¢×îÖÕ»ñµÃrootȨÏÞ¡£¡£¡£¡£¡£¸ÃÎó²îÓ°ÏìÁË Linux Kernel 5.8 ¼°¸ü¸ß°æ±¾£¬£¬£¬£¬ £¬£¬ÉõÖÁÓ°ÏìÁËAndroid×°±¸¡£¡£¡£¡£¡£

CVE-2022-0847Îó²îÀàËÆÓÚ 2016 ÄêÐÞ¸´µÄ Dirty COW Îó²î (CVE-2016-5195)£¬£¬£¬£¬ £¬£¬µ«Ëü¸üÈÝÒ×±»Ê¹Ó㬣¬£¬£¬ £¬£¬ÏÖÔÚ´ËÎó²îµÄPoC/EXPÒѾ­Ðû²¼¡£¡£¡£¡£¡£

image.png

 

Ó°Ïì¹æÄ£

Linux Kernel°æ±¾ >= 5.8

Linux Kernel°æ±¾ < 5.16.11 / 5.15.25 / 5.10.102

 

0x02 Çå¾²½¨Òé

ÏÖÔÚ´ËÎó²îÒѾ­ÔÚLinux ÄÚºË 5.16.11¡¢5.15.25 ºÍ 5.10.102 ÖÐÐÞ¸´¡£¡£¡£¡£¡£¼øÓÚ´ËÎó²îºÜÈÝÒ×ʹÓÃÒÔ»ñµÃrootȨÏÞ£¬£¬£¬£¬ £¬£¬ÇÒÎó²îʹÓÃÒѾ­¹ûÕæ£¬£¬£¬£¬ £¬£¬½¨ÒéÊÜÓ°ÏìÓû§ÊµÊ±Éý¼¶¸üС£¡£¡£¡£¡£

ÏÂÔØÁ´½Ó£º

https://kernel.org/

 

0x03 ²Î¿¼Á´½Ó

https://dirtypipe.cm4all.com/

https://www.bleepingcomputer.com/news/security/new-linux-bug-gives-root-on-all-major-distros-exploit-released/

https://twitter.com/phithon_xg

 

0x04 °æ±¾ÐÅÏ¢

°æ±¾

ÈÕÆÚ

ÐÞ¸ÄÄÚÈÝ

V1.0

2022-03-08

Ê×´ÎÐû²¼

 

0x05 ¸½Â¼

c7c7ÓéÀÖÆ½Ì¨¼ò½é

c7c7ÓéÀÖÆ½Ì¨¹«Ë¾½¨ÉèÓÚ1996Ä꣬£¬£¬£¬ £¬£¬²¢ÓÚ2010Äê6ÔÂ23ÈÕÔÚÉî½»ËùÖÐС°åÕýʽ¹ÒÅÆÉÏÊУ¬£¬£¬£¬ £¬£¬ÊǺ£ÄÚ¼«¾ßʵÁ¦µÄ¡¢ÓµÓÐÍêÈ«×ÔÖ÷֪ʶ²úȨµÄÍøÂçÇå¾²²úÆ·¡¢¿ÉÐÅÇå¾²ÖÎÀíÆ½Ì¨¡¢Ç徲ЧÀÍÓë½â¾ö¼Æ»®µÄ×ÛºÏÌṩÉÌ¡£¡£¡£¡£¡£

¹«Ë¾×ܲ¿Î»ÓÚ±±¾©ÊÐÖйشåÈí¼þÔ°£¬£¬£¬£¬ £¬£¬ÔÚÌìϸ÷Ê¡¡¢ÊС¢×ÔÖÎÇøÉèÓзÖÖ§»ú¹¹£¬£¬£¬£¬ £¬£¬ÓµÓÐÁýÕÖÌìϵÄÇþµÀϵͳºÍÊÖÒÕÖ§³ÖÖÐÐÄ£¬£¬£¬£¬ £¬£¬²¢ÔÚ±±¾©¡¢ÉϺ£¡¢³É¶¼¡¢¹ãÖÝ¡¢³¤É³¡¢º¼ÖÝµÈ¶àµØÉèÓÐÑз¢ÖÐÐÄ¡£¡£¡£¡£¡£

¶àÄêÀ´£¬£¬£¬£¬ £¬£¬c7c7ÓéÀÖÆ½Ì¨ÖÂÁ¦ÓÚÌṩ¾ßÓйú¼Ê¾ºÕùÁ¦µÄ×ÔÖ÷Á¢ÒìµÄÇå¾²²úÆ·ºÍ×î¼Ñʵ¼ùЧÀÍ£¬£¬£¬£¬ £¬£¬×ÊÖú¿Í»§ÖÜÈ«ÌáÉýÆäIT»ù´¡ÉèÊ©µÄÇå¾²ÐÔºÍÉú²úЧÄÜ£¬£¬£¬£¬ £¬£¬Îª´òÔìºÍÌáÉý¹ú¼Ê»¯µÄÃñ×åÐÅÏ¢Çå¾²¹¤ÒµÁì¾üÆ·ÅÆ¶ø²»Ð¸Æð¾¢¡£¡£¡£¡£¡£

 

¹ØÓÚc7c7ÓéÀÖÆ½Ì¨

c7c7ÓéÀÖÆ½Ì¨Çå¾²Ó¦¼±ÏìÓ¦ÖÐÐÄÖ÷ÒªÕë¶ÔÖ÷ÒªÇå¾²Îó²îµÄÔ¤¾¯¡¢¸ú×ٺͷÖÏíÈ«Çò×îеÄÍþвÇ鱨ºÍÇå¾²±¨¸æ¡£¡£¡£¡£¡£

¹Ø×¢ÒÔϹ«Öںţ¬£¬£¬£¬ £¬£¬»ñȡȫÇò×îÐÂÇå¾²×ÊѶ£º

image.png