data:image/s3,"s3://crabby-images/28fab/28fab4fd3cdd6c55349786bee3aaee08ada2065c" alt="pinkit"
CVE-2021-4034 Proof of concept for pwnkit vulnerability. Local privilege escalation via pkexec
YouTube video
Run locally
make all && ./pwnkit && make clean
Run in docker
# Build the docker image docker build -t pwnkit . # Run the exploit docker run -it pwnkit bash make all && ./pwnkit && make clean
Detect using snyk-cli
snyk container test pwnkit:latest --file=Dockerfile
Resources
The CVE-2021-4034 Poc is a github repository by PwnFunction
Leave a Reply