polkit 漏洞利用脚本
使用 polkit 服务自动提升至 root 权限的脚本
| 发行版 | 是否受影响? |
|---|---|
| RHEL 7 | 否 |
| RHEL 8 | 是 |
| Fedora 20(或更早版本) | 否 |
| Fedora 21(或更新版本) | 是 |
| Debian 10(“buster”) | 否 |
| Debian testing(“bullseye”) | 是 |
| Ubuntu 18.04 | 否 |
| Ubuntu 20.04 | 是 |
ssh localhost
git clone https://github.com/tyleraharrison/CVE-2021-3560_PoC.git
cd CVE-2021-3560_PoC
./polkitRoot.sh
dos2unix polkitRoot.sh 来更改换行符,因为 GitHub 将它们改为 CRLF,而 Bash 不兼容此格式在 Ubuntu 20.04 中测试通过
参考:https://github.blog/2021-06-10-privilege-escalation-polkit-root-on-linux-with-bug/