diff --git a/docs/index.html b/docs/index.html index 110adcd..b5c742e 100644 --- a/docs/index.html +++ b/docs/index.html @@ -99,53 +99,42 @@ -
- Sortable by clicking column headers. π’ = lands root by
- default Β· π‘ = primitive + opt-in --full-chain.
-
Structural exploits + page-cache writes. No per-kernel offsets needed.
+| Year | -CVE | -Bug | -Module | -Tier | -
|---|---|---|---|---|
| 2024 | CVE-2024-1086 | nf_tables nft_verdict_init cross-cache UAF | nf_tables | π‘ primitive |
| 2023 | CVE-2023-32233 | nf_tables anonymous-set UAF | nft_set_uaf | π‘ primitive |
| 2023 | CVE-2023-22809 | sudoedit EDITOR/VISUAL -- argv escape | sudoedit_editor | π’ full chain |
| 2023 | CVE-2023-4622 | AF_UNIX garbage-collector race UAF | af_unix_gc | π‘ primitive |
| 2023 | CVE-2023-3269 | StackRot β maple-tree VMA-split UAF | stackrot | π‘ primitive |
| 2023 | CVE-2023-2008 | vmwgfx DRM buffer-object OOB write | vmwgfx | π‘ primitive |
| 2023 | CVE-2023-0386 | overlayfs copy_up preserves setuid bit | overlayfs_setuid | π’ full chain |
| 2023 | CVE-2023-0458 | EntryBleed β KPTI prefetchnta KASLR bypass | entrybleed | π’ leak |
| 2023 | CVE-2023-0179 | nft_payload set-id memory corruption | nft_payload | π‘ primitive |
| 2022 | CVE-2022-25636 | nft_fwd_dup_netdev_offload heap OOB | nft_fwd_dup | π‘ primitive |
| 2022 | CVE-2022-2588 | net/sched cls_route4 dangling-filter UAF | cls_route4 | π‘ primitive |
| 2022 | CVE-2022-0492 | cgroup v1 release_agent ns mismatch | cgroup_release_agent | π’ full chain |
| 2022 | CVE-2022-0847 | Dirty Pipe β page-cache write via splice | dirty_pipe | π’ full chain |
| 2022 | CVE-2022-0185 | fsconfig legacy_parse_param 4k heap OOB | fuse_legacy | π‘ primitive |
| 2021 | CVE-2021-33909 | Sequoia β seq_file size_tβint wrap | sequoia | π‘ primitive |
| 2021 | CVE-2021-3156 | sudo Baron Samedit heap overflow | sudo_samedit | π‘ primitive |
| 2021 | CVE-2021-3493 | Ubuntu overlayfs userns file-cap injection | overlayfs | π’ full chain |
| 2021 | CVE-2021-22555 | iptables xt_compat 4-byte heap OOB | netfilter_xtcompat | π‘ primitive |
| 2021 | CVE-2021-4034 | Pwnkit β pkexec NULL argv env-injection | pwnkit | π’ full chain |
| 2020 | CVE-2020-14386 | AF_PACKET tp_reserve integer underflow | af_packet2 | π‘ primitive |
| 2019 | CVE-2019-13272 | PTRACE_TRACEME β setuid execve race | ptrace_traceme | π’ full chain |
| 2017 | CVE-2017-7308 | AF_PACKET TPACKET_V3 integer overflow | af_packet | π‘ primitive |
| 2016 | CVE-2016-5195 | Dirty COW β COW race via /proc/self/mem | dirty_cow | π’ full chain |
| 2026 | CVE-2026-31431 | Copy Fail β algif_aead authencesn page-cache write | copy_fail | π’ full chain |
| 2026 | CVE-2026-43284 | Dirty Frag β IPv4 xfrm-ESP page-cache write | dirty_frag_esp | π’ full chain |
| 2026 | CVE-2026-43284 | Dirty Frag β IPv6 xfrm-ESP (esp6) | dirty_frag_esp6 | π’ full chain |
| 2026 | CVE-2026-43500 | Dirty Frag β RxRPC handshake forgery | dirty_frag_rxrpc | π’ full chain |
| 2026 | variant | Copy Fail GCM β rfc4106(gcm(aes)) sibling | copy_fail_gcm | π’ full chain |
--full-chainDefault returns EXPLOIT_FAIL honestly. With --full-chain + resolved offsets, runs the shared modprobe_path finisher.