JH7110_VisionFive2_devel: vulnerable to CVE-2022-0847 aka DirtyPipe exploit · Issue #93 · starfive-tech/linux

Hi, A serious flaw still exists and can affect thousands of VF2's deployed so far. Dirtypipe is easily exploitable, allows to overwrite any file in filesystem not normally writable (permissions che...

GitHub
Oh wow, the explainer for the "Dirty Pipe" vulnerability, written by the researcher who discovered it, is incredibly detailed. I like that they included the story how they found it.
https://dirtypipe.cm4all.com/
#DirtyPipe #CVE_2022_0847
The Dirty Pipe Vulnerability — The Dirty Pipe Vulnerability documentation