├── 1-heap_spray_UAF ├── easy_uaf.c ├── exp_heap_spray.c ├── exp_heap_spray_original.c ├── test_smep.c └── vuln_driver.h ├── 2-arbitrary_rw ├── VDSO.dump ├── exp_VDSO.c ├── exp_cred.c ├── exp_run_cmd.c ├── exp_tty_struct.c └── sudo_me.c ├── 3-uninitialised_stack └── exp_uninitialised_stack.c ├── file ├── bzImage ├── gdb_kernel.sh ├── start.sh ├── vuln_driver.cpio └── vuln_driver.ko ├── readme.md └── vulnerable_driver ├── Makefile └── src ├── arbitrary_rw.h ├── buffer_overflow.h ├── null_pointer_deref.h ├── uninitialised_stack_var.h ├── use_after_free.h ├── vuln_driver.c └── vuln_driver.h /1-heap_spray_UAF/easy_uaf.c: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/bsauce/kernel_exploit_series/HEAD/1-heap_spray_UAF/easy_uaf.c -------------------------------------------------------------------------------- /1-heap_spray_UAF/exp_heap_spray.c: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/bsauce/kernel_exploit_series/HEAD/1-heap_spray_UAF/exp_heap_spray.c -------------------------------------------------------------------------------- /1-heap_spray_UAF/exp_heap_spray_original.c: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/bsauce/kernel_exploit_series/HEAD/1-heap_spray_UAF/exp_heap_spray_original.c -------------------------------------------------------------------------------- /1-heap_spray_UAF/test_smep.c: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/bsauce/kernel_exploit_series/HEAD/1-heap_spray_UAF/test_smep.c -------------------------------------------------------------------------------- /1-heap_spray_UAF/vuln_driver.h: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/bsauce/kernel_exploit_series/HEAD/1-heap_spray_UAF/vuln_driver.h -------------------------------------------------------------------------------- /2-arbitrary_rw/VDSO.dump: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/bsauce/kernel_exploit_series/HEAD/2-arbitrary_rw/VDSO.dump -------------------------------------------------------------------------------- /2-arbitrary_rw/exp_VDSO.c: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/bsauce/kernel_exploit_series/HEAD/2-arbitrary_rw/exp_VDSO.c -------------------------------------------------------------------------------- /2-arbitrary_rw/exp_cred.c: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/bsauce/kernel_exploit_series/HEAD/2-arbitrary_rw/exp_cred.c -------------------------------------------------------------------------------- /2-arbitrary_rw/exp_run_cmd.c: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/bsauce/kernel_exploit_series/HEAD/2-arbitrary_rw/exp_run_cmd.c -------------------------------------------------------------------------------- /2-arbitrary_rw/exp_tty_struct.c: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/bsauce/kernel_exploit_series/HEAD/2-arbitrary_rw/exp_tty_struct.c -------------------------------------------------------------------------------- /2-arbitrary_rw/sudo_me.c: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/bsauce/kernel_exploit_series/HEAD/2-arbitrary_rw/sudo_me.c -------------------------------------------------------------------------------- /3-uninitialised_stack/exp_uninitialised_stack.c: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/bsauce/kernel_exploit_series/HEAD/3-uninitialised_stack/exp_uninitialised_stack.c -------------------------------------------------------------------------------- /file/bzImage: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/bsauce/kernel_exploit_series/HEAD/file/bzImage -------------------------------------------------------------------------------- /file/gdb_kernel.sh: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/bsauce/kernel_exploit_series/HEAD/file/gdb_kernel.sh -------------------------------------------------------------------------------- /file/start.sh: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/bsauce/kernel_exploit_series/HEAD/file/start.sh -------------------------------------------------------------------------------- /file/vuln_driver.cpio: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/bsauce/kernel_exploit_series/HEAD/file/vuln_driver.cpio -------------------------------------------------------------------------------- /file/vuln_driver.ko: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/bsauce/kernel_exploit_series/HEAD/file/vuln_driver.ko -------------------------------------------------------------------------------- /readme.md: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/bsauce/kernel_exploit_series/HEAD/readme.md -------------------------------------------------------------------------------- /vulnerable_driver/Makefile: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/bsauce/kernel_exploit_series/HEAD/vulnerable_driver/Makefile -------------------------------------------------------------------------------- /vulnerable_driver/src/arbitrary_rw.h: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/bsauce/kernel_exploit_series/HEAD/vulnerable_driver/src/arbitrary_rw.h -------------------------------------------------------------------------------- /vulnerable_driver/src/buffer_overflow.h: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/bsauce/kernel_exploit_series/HEAD/vulnerable_driver/src/buffer_overflow.h -------------------------------------------------------------------------------- /vulnerable_driver/src/null_pointer_deref.h: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/bsauce/kernel_exploit_series/HEAD/vulnerable_driver/src/null_pointer_deref.h -------------------------------------------------------------------------------- /vulnerable_driver/src/uninitialised_stack_var.h: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/bsauce/kernel_exploit_series/HEAD/vulnerable_driver/src/uninitialised_stack_var.h -------------------------------------------------------------------------------- /vulnerable_driver/src/use_after_free.h: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/bsauce/kernel_exploit_series/HEAD/vulnerable_driver/src/use_after_free.h -------------------------------------------------------------------------------- /vulnerable_driver/src/vuln_driver.c: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/bsauce/kernel_exploit_series/HEAD/vulnerable_driver/src/vuln_driver.c -------------------------------------------------------------------------------- /vulnerable_driver/src/vuln_driver.h: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/bsauce/kernel_exploit_series/HEAD/vulnerable_driver/src/vuln_driver.h --------------------------------------------------------------------------------