Entreprise d'experts en Sécurité Informatique : Audits et conseils en cybersécurité
Entreprise française de cybersécurité depuis 2004
☎ 03 60 47 09 81 - info@securiteinfo.com


CVE-2010-3904

Description

The rds_page_copy_user function in net/rds/page.c in the Reliable Datagram Sockets (RDS) protocol implementation in the Linux kernel before 2.6.36 does not properly validate addresses obtained from user space, which allows local users to gain privileges via crafted use of the sendmsg and recvmsg system calls.

POC

Reference

- http://packetstormsecurity.com/files/155751/vReliable-Datagram-Sockets-RDS-rds_page_copy_user-Privilege-Escalation.html

- http://www.ubuntu.com/usn/USN-1000-1

- http://www.vmware.com/security/advisories/VMSA-2011-0012.html

- https://www.exploit-db.com/exploits/44677/

Github

- https://github.com/0xD13/OSCP-Prep-Guide

- https://github.com/0xS3rgI0/OSCP

- https://github.com/0xTo/linux-kernel-exploits

- https://github.com/0xs3rgi0/OSCP

- https://github.com/3TH1N/Kali

- https://github.com/4n6strider/The-Security-Handbook

- https://github.com/ARPSyndicate/cvemon

- https://github.com/Ahsanzia/OSCP

- https://github.com/AidenPearce369/OSCP-Notes

- https://github.com/Ak500k/oscp-notes

- https://github.com/Al1ex/LinuxEelvation

- https://github.com/AmariHana/Linux_menthor

- https://github.com/C0dak/linux-kernel-exploits

- https://github.com/C0dak/local-root-exploit-

- https://github.com/CCIEVoice2009/oscp-survival

- https://github.com/CVEDB/PoC-List

- https://github.com/CVEDB/awesome-cve-repo

- https://github.com/CYBER-PUBLIC-SCHOOL/linux-privilege-escalation-cheatsheet

- https://github.com/De4dCr0w/Linux-kernel-EoP-exp

- https://github.com/DhivaKD/OSCP-Notes

- https://github.com/DictionaryHouse/The-Security-Handbook-Kali-Linux

- https://github.com/Elinpf/OSCP-survival-guide

- https://github.com/Feng4/linux-kernel-exploits

- https://github.com/Gajasurve/The-Security-Handbook

- https://github.com/HaxorSecInfec/autoroot.sh

- https://github.com/JlSakuya/Linux-Privilege-Escalation-Exploits

- https://github.com/Kiosec/Linux-Exploitation

- https://github.com/MLGBSec/os-survival

- https://github.com/Micr067/linux-kernel-exploits

- https://github.com/Oakesh/The-Security-Handbook

- https://github.com/Ostorlab/KEV

- https://github.com/Ostorlab/known_exploited_vulnerbilities_detectors

- https://github.com/PsychoH4x0r/Unknown1337-Auto-Root-

- https://github.com/QChiLan/linux-exp

- https://github.com/R0B1NL1N/Linux-Kernal-Exploits-m-

- https://github.com/R0B1NL1N/Linux-Kernel-Exploites

- https://github.com/Raavan353/Pentest-notes

- https://github.com/Satya42/OSCP-Guide

- https://github.com/SecWiki/linux-kernel-exploits

- https://github.com/SenpaiX00/OSCP-Survival

- https://github.com/Shadowshusky/linux-kernel-exploits

- https://github.com/Singlea-lyh/linux-kernel-exploits

- https://github.com/Skixie/OSCP-Journey

- https://github.com/Snoopy-Sec/Localroot-ALL-CVE

- https://github.com/T3b0g025/PWK-CheatSheet

- https://github.com/TheASC11/oscp-notes

- https://github.com/TheLinuxMentor/oscp-notes

- https://github.com/ZTK-009/linux-kernel-exploits

- https://github.com/a-roshbaik/Linux-Privilege-Escalation-Exploits

- https://github.com/akr3ch/OSCP-Survival-Guide

- https://github.com/aktechnohacker/OSCP-Notes

- https://github.com/albinjoshy03/linux-kernel-exploits

- https://github.com/alian87/linux-kernel-exploits

- https://github.com/amane312/Linux_menthor

- https://github.com/arya07071992/oscp_guide

- https://github.com/aymankhder/OSCPvipNOTES

- https://github.com/coffee727/linux-exp

- https://github.com/cookiengineer/goroot

- https://github.com/cookiengineer/groot

- https://github.com/copperfieldd/linux-kernel-exploits

- https://github.com/deepamkanjani/The-Security-Handbook

- https://github.com/dexterity-cyber/The-Security-Handbook

- https://github.com/dhivakar-rk/OSCP-Notes

- https://github.com/distance-vector/linux-kernel-exploits

- https://github.com/doduytrung/The-Security-Handbook

- https://github.com/doffensive/wired-courtyard

- https://github.com/elorion/The-Security-Handbook

- https://github.com/elzerjp/OSCP

- https://github.com/fei9747/LinuxEelvation

- https://github.com/frizb/Linux-Privilege-Escalation

- https://github.com/geeksniper/Linux-privilege-escalation

- https://github.com/h4x0r-dz/local-root-exploit-

- https://github.com/hack-parthsharma/Personal-OSCP-Notes

- https://github.com/hafizgemilang/notes

- https://github.com/hafizgemilang/oscp-notes

- https://github.com/hktalent/bug-bounty

- https://github.com/iantal/The-Security-Handbook

- https://github.com/ibr2/pwk-cheatsheet

- https://github.com/infosec-harshalkukade/OSCP

- https://github.com/ismailvc1111/Linux_Privilege

- https://github.com/jamiechap/oscp

- https://github.com/joker2a/OSCP

- https://github.com/k0mi-tg/OSCP

- https://github.com/k0mi-tg/OSCP-note

- https://github.com/kumardineshwar/linux-kernel-exploits

- https://github.com/kyuna0312/Linux_menthor

- https://github.com/kyuna312/Linux_menthor

- https://github.com/m0mkris/linux-kernel-exploits

- https://github.com/make0day/pentest

- https://github.com/manas3c/OSCP-note

- https://github.com/maririn312/Linux_menthor

- https://github.com/miya0312/Linux_menthor

- https://github.com/mjutsu/OSCP

- https://github.com/mmt55/kalilinux

- https://github.com/monkeysm8/OSCP_HELP

- https://github.com/nisadevi11/Localroot-ALL-CVE

- https://github.com/nitishbadole/hacking_30

- https://github.com/nmvuonginfosec/linux

- https://github.com/nullport/The-Security-Handbook

- https://github.com/ozkanbilge/Linux-Kernel-Exploits

- https://github.com/p00h00/linux-exploits

- https://github.com/password520/linux-kernel-exploits

- https://github.com/pbnj/The-Security-Handbook

- https://github.com/pyCity/Wiggles

- https://github.com/qiantu88/Linux--exp

- https://github.com/r0ug3/The-Security-Handbook

- https://github.com/rahmanovmajid/OSCP

- https://github.com/rakjong/LinuxElevation

- https://github.com/redhatkaty/-cve-2010-3904-report

- https://github.com/redteampa1/my-learning

- https://github.com/reybango/The-Security-Handbook

- https://github.com/satyamkumar420/KaliLinuxPentestingCommands

- https://github.com/shafeekzamzam/MyOSCPresources

- https://github.com/sonu7519/linux-priv-Esc

- https://github.com/tranquac/Linux-Privilege-Escalation

- https://github.com/usamaelshazly/Linux-Privilege-Escalation

- https://github.com/vlain1337/auto-lpe

- https://github.com/whackmanic/OSCP_Found

- https://github.com/xFinu/linux-kernel-exploits

- https://github.com/xcode96/REDME

- https://github.com/xfinest/linux-kernel-exploits

- https://github.com/xssfile/linux-kernel-exploits

- https://github.com/yige666/linux-kernel-exploits

- https://github.com/youwizard/OSCP-note

- https://github.com/zyjsuper/linux-kernel-exploits