CVE-2014-3153
The futex_requeue function in kernel/futex.c in the Linux kernel through 3.14.5 does not ensure that calls have two different futex addresses, which allows local users to gain privileges via a crafted FUTEX_REQUEUE command that facilitates unsafe waiter modification.
- Linux Linux Kernel
- < 3.2.60, 3.4.92, 3.10.42, 3.12.22, 3.14.6
- CVSS 3.1
- 7.8 HIGH
- EPSS
- 37.2% (98th percentile)
- NVD status
- Analyzed
- Published
- 2014-06-07
CVE-2014-3153 at NVD
23 known exploits for CVE-2014-3153
Proof-of-concept code and exploit modules indexed by Sploitus
linux-kernel-exploits
CVE-2014-3153
TowelRoot
CVE-2014-3153
towelroot
CVE-2014-3153-exploit
CVE-2014-3153
Linux-kernel-code-injection_CVE-2014-3153
CVE-2014-3153
Exploit for CVE-2014-3153
Android Futex Requeue Kernel Exploit
Android Futex Requeue Kernel Exploit
Exploit for CVE-2014-3153
Linux kernel futex_requeue privilege elevation
Linux kernel futex_requeue privilege elevation
Linux kernel futex_requeue privilege elevation
Linux kernel futex_requeue privilege elevation
Linux Kernel libfutex Local Root for RHEL/CentOS 7.0.1406 Exploit
Linux Kernel 3.14.5 (CentOS 7 RHEL) - libfutex Local Privilege Escalation
Linux Kernel 3.14.5 (CentOS 7 / RHEL) - 'libfutex' Local Privilege Escalation
Exploit for CVE-2014-3153
Immunity Canvas: LINUX_FUTEX_REQUEUE
Android 'Towelroot' Futex Requeue Kernel Exploit