/remote_pocs

Some old unexploited remote kernel memory corruption PoCs

Primary LanguagePythonMIT LicenseMIT

PoCs

poc1 (SMB)

  • Target: SMBClient-231.120.2
  • Discovered on 31/01/2022, reported on 02/02/2022
  • PoC tested on macOS 12.2
  • CVE assigned: CVE-2022-22651 (14/03/2022)
  • Bounty awarded: $75,500

poc2 (SMB)

  • Target: SMBClient-286.40.9
  • Discovered on 05/02/2022, reported on 16/03/2022
  • PoC tested on macOS 12.3
  • CVE assigned: CVE-2022-26723 (16/05/2022)
  • Bounty awarded: $25,500

poc3 (SMB)

  • Target: SMBClient-287.101.2
  • Discovered on 05/05/2022, reported on 11/05/2022
  • PoC tested on macOS 12.3.1
  • CVE assigned: CVE-2022-32934 (24/10/2022)
  • Bounty awarded: $75,000

poc4 (NFS)

  • Target: xnu-8020.121.3
  • Discovered on 22/06/2022, reported on 23/06/2022
  • PoC tested on macOS 12.4
  • CVE assigned: CVE-2022-46701 (13/12/2022)
  • Bounty awarded: $11,500