Skip to content

Commit c299c47

Browse files
authored
Update 2023-03-03-web-ctf-tips.md
1 parent 7834113 commit c299c47

File tree

1 file changed

+4
-2
lines changed

1 file changed

+4
-2
lines changed

_posts/2023-03-03-web-ctf-tips.md

Lines changed: 4 additions & 2 deletions
Original file line numberDiff line numberDiff line change
@@ -103,12 +103,14 @@ CVE-2023-3269
103103
CVE-2023-1521 https://github.com/rubbxalc/CVE-2023-1521 Linux the sccache client lpe
104104
cve-2023-2598 https://github.com/ysanatomic/io_uring_LPE-CVE-2023-2598/blob/main/exploit.c Linux Kernel io_uring 拒绝服务漏洞
105105
CVE-2023-50254 https://github.com/febinrev/deepin-linux_reader_RCE-exploit Deepin Linux的默认文档阅读器deepin-reader在版本6.0.7
106-
CVE-2023-6546 https://github.com/torvalds/linux/commit/3c4f8333b582487a2d1e02171f1465531cde53e3 Linux Kernel GSM Multiplexing Race Condition Local Privilege Escalation
106+
CVE-2023-6546 https://github.com/torvalds/linux/commit/3c4f8333b582487a2d1e02171f1465531cde53e3 Linux Kernel GSM Multiplexing Race Condition LPE
107107
cve-2023-5345 https://avd.aliyun.com/detail?id=AVD-2023-5345 无poc Linux 内核的 fs/smb/client 组件中的释放后使用
108108
CVE-2023-6246 无poc GNU C库的__vsyslog_internal()函数中的存在堆基缓冲区溢出漏洞,lpe 影响挺大
109109
https://github.com/vusec/ghostrace Linux kernel v5.15.83 for Speculative Concurrent Use-After-Free (SCUAF) gadgets
110-
111110
CVE-2024-1086 https://github.com/Notselwyn/CVE-2024-1086 Linux kernels between v5.14 and v6.6, including Debian, Ubuntu, and KernelCTF
111+
CVE-2024-0582 https://github.com/ysanatomic/io_uring_LPE-CVE-2024-0582 linux内核通过缓冲区环 mmap 的页面释放后
112+
CVE-2024-28085 https://github.com/skyler-ferrante/CVE-2024-28085 linux标准软件包 util-linux <2.40 setid 提权漏洞
113+
112114

113115
Exchange and outlook and hyper-v and word and ppt
114116
CVE-2022-41082 https://github.com/balki97/OWASSRF-CVE-2022-41082-POC NotProxyShell OWASSRF Vul Effecting Microsoft Exchange

0 commit comments

Comments
 (0)