oss-sec mailing list archives

Re: CVE-2022-1729: race condition in Linux perf subsystem leads to local privilege escalation


From: Norbert Slusarek <nslusarek () gmx net>
Date: Wed, 25 May 2022 00:20:44 +0200

Hello Alexander,

Since you shared actual exploit code on linux-distros, you're supposed
to also post that to oss-security within 7 days of your first posting
above, so by or on May 27. Do you intend to?

I don't intend to share the exploit to the public, mainly because
the issue was fixed only few days ago. Instead, anyone wanting to check
his own system for the bug should resort to the attached PoC repro.

I realize this is one of the aspects that not everyone is happy about.

Yes, you got that right.


Norbert

Attachment: repro.c
Description:


Current thread: