CVE-2022-0847
KEVHIGH 7.8EPSS 89.7%
A flaw was found in the way the "flags" member of the new pipe buffer structure was lacking proper initialization in copy_page_to_iter_pipe and push_pipe functions in the Linux kernel and could thus contain stale values. An unprivileged local user could use this flaw to write to pages in the page cache backed by read only files and as such escalate their privileges on the system.
- CVSS v3.1
- 7.8 HIGH
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H - CVSS v3.1
- 7.8 HIGH
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H - CVSS v2.0
- 7.2 HIGH
AV:L/AC:L/Au:N/C:C/I:C/A:C - EPSS
- 89.72% chance of exploitation in the next 30 days, 100th percentile
- CISA KEV
- added 2022-04-25
- Published
- 2022-03-07
- Updated
- 2025-10-21
Proof-of-concept exploits (153)
- http://packetstormsecurity.com/files/166229/Dirty-Pipe-Linux-Privilege-Escalation.html
- http://packetstormsecurity.com/files/166230/Dirty-Pipe-SUID-Binary-Hijack-Privilege-Escal…
- http://packetstormsecurity.com/files/166258/Dirty-Pipe-Local-Privilege-Escalation.html
- https://dirtypipe.cm4all.com/
- 0xIronGoat/dirty-pipe14★ · 2022-03-08
- 0xeremus/dirty-pipe-poc2★ · 2023-06-20
- 0xr1l3s/CVE-2022-08470★ · 2022-04-03
- 0xsmirk/vehicle-kernel-exploit2★ · 2024-02-29
- 4luc4rdr5290/CVE-2022-08476★ · 2022-03-08
- Al1ex/CVE-2022-084791★ · 2022-03-09
- AlexisAhmed/CVE-2022-0847-DirtyPipe-Exploits729★ · 2023-05-20
- Amit29533/Global-Attack-Map0★ · 2025-08-11
- Arinerron/CVE-2022-0847-DirtyPipe-Exploit1133★ · 2022-03-08
- AyoubNajim/cve-2022-0847dirtypipe-exploit0★ · 2022-03-09
- CYB3RK1D/CVE-2022-0847-POC2★ · 2022-03-15
- CharonDefalt/linux-exploit0★ · 2023-09-27
- DanaEpp/pwncat_dirtypipe4★ · 2022-03-21
- DataDog/dirtypipe-container-breakout-poc77★ · 2022-04-20
- DataFox/CVE-2022-08470★ · 2022-12-21
- EagleTube/CVE-2022-08473★ · 2022-08-14
- FedericoGaribay/Tarea-exploit0★ · 2023-05-13
- Greetdawn/CVE-2022-0847-DirtyPipe0★ · 2022-03-11
- Greetdawn/CVE-2022-0847-DirtyPipe-0★ · 2022-03-11
- Gustavo-Nogueira/Dirty-Pipe-Exploits2★ · 2022-09-26
- ITMarcin2211/CVE-2022-0847-DirtyPipe-Exploit1★ · 2022-03-08
- JlSakuya/CVE-2022-0847-container-escape2★ · 2023-04-26
- LudovicPatho/CVE-2022-084710★ · 2022-04-05
- LudovicPatho/CVE-2022-0847_dirty-pipe10★ · 2022-04-05
- Mephierr/DirtyPipe_exploit1★ · 2025-01-21
- Mustafa1986/CVE-2022-0847-DirtyPipe-Exploit6★ · 2022-03-09
- Patocoh/Research-Dirty-Pipe0★ · 2022-03-25
- RogelioPumajulca/CVE-2022-08470★ · 2025-02-09
- Scouserr/cve-2022-0847-poc-dockerimage0★ · 2025-08-07
- Shadow-Spinner/CVE-2022-08470★ · 2025-09-12
- ShaharyarJalaluddin/cve202208470★ · 2024-10-29
- Shotokhan/cve_2022_0847_shellcode3★ · 2022-03-14
- Trickhish/automated_privilege_escalation1★ · 2024-01-20
- V0WKeep3r/CVE-2022-0847-DirtyPipe-Exploit0★ · 2022-03-10
- VinuKalana/DirtyPipe-CVE-2022-08472★ · 2022-06-02
- WilliamQ28/Worst-autoLinPrivesc0★ · 2025-07-30
- ZZ-SOCMAP/CVE-2022-084757★ · 2022-03-08
- ahrixia/CVE_2022_084721★ · 2022-03-08
- ajith737/Dirty-Pipe-CVE-2022-0847-POCs0★ · 2023-01-04
- al4xs/CVE-2022-0847-Dirty-Pipe0★ · 2022-03-10
- antx-code/CVE-2022-084757★ · 2022-03-08
- arrdyas/planner0★ · 2025-07-24
- arttnba3/CVE-2022-08476★ · 2024-06-17
- atksh/Dirty-Pipe-sudo-poc0★ · 2022-03-08
- ayushx007/CVE-2022-0847-DirtyPipe-Exploits0★ · 2023-11-05
- babyshen/CVE-2022-08470★ · 2022-03-10
- bbaranoff/CVE-2022-084750★ · 2022-03-07
- bohr777/cve-2022-0847dirtypipe-exploit0★ · 2022-03-08
- brant-ruan/poc-demo2★ · 2022-12-20
- breachnix/dirty-pipe-poc15★ · 2022-03-14
- bugbounty88/dirtypipe_exploit1★ · 2025-07-12
- byteReaper77/Dirty-Pipe3★ · 2025-04-19
- carlcedin/moe-demo0★ · 2024-02-18
- carlosevieira/Dirty-Pipe10★ · 2022-03-07
- ch1lL9uy/TTCS0★ · 2025-04-14
- chenaotian/CVE-2022-084725★ · 2022-03-10
- crowsec-edtech/Dirty-Pipe10★ · 2022-03-07
- crusoe112/DirtyPipePython10★ · 2022-03-23
- cspshivam/CVE-2022-0847-dirty-pipe-exploit2★ · 2022-03-08
- cypherlobo/DirtyPipe-BSI0★ · 2025-03-25
- dadhee/CVE-2022-0847_DirtyPipeExploit2★ · 2022-03-09
- decrypthing/CVE_2022_08470★ · 2022-03-14
- drapl0n/dirtypipe7★ · 2022-04-02
- edsonjt81/CVE-2022-0847-DirtyPipe-0★ · 2022-10-12
- edsonjt81/CVE-2022-0847-Linux0★ · 2022-03-10
- eduquintanilha/CVE-2022-0847-DirtyPipe-Exploits3★ · 2022-08-02
- emmaneugene/CS443-project0★ · 2022-11-09
- eric-glb/dirtypipe1★ · 2022-10-07
- febinrev/dirtypipez-exploit49★ · 2022-03-08
- githublihaha/DirtyPIPE-CVE-2022-08470★ · 2022-03-15
- greenhandatsjtu/CVE-2022-0847-Container-Escape37★ · 2026-05-07
- gyaansastra/CVE-2022-08473★ · 2022-03-20
- h4ckm310n/CVE-2022-0847-eBPF8★ · 2023-11-04
- hardenedvault/vault_range_poc47★ · 2025-04-05
- hxlxmj/TheDirtyPipeExploit0★ · 2022-06-15
- hxlxmjxbbxs/TheDirtyPipeExploit0★ · 2022-06-15
- imfiver/CVE-2022-0847282★ · 2023-02-02
- joeymeech/CVE-2022-0847-Exploit-Implementation1★ · 2023-07-11
- jonathanbest7/cve-2022-08470★ · 2023-04-30
- jpts/CVE-2022-0847-DirtyPipe-Container-Breakout2★ · 2022-04-20
- jxpsx/CVE-2022-0847-DirtyPipe-Exploits0★ · 2022-06-29
- karanlvm/DirtyPipe-Exploit2★ · 2025-10-14
- knqyf263/CVE-2022-084746★ · 2022-03-08
- letsr00t/CVE-2022-08470★ · 2024-02-15
- liamg/traitor7160★ · 2024-03-12
- lucksec/CVE-2022-08471★ · 2022-03-08
- michaelklaan/CVE-2022-0847-Dirty-Pipe0★ · 2022-03-10
- mithunmadhukuttan/Dirty-Pipe-Exploit0★ · 2025-01-08
- morgenm/dirtypipe0★ · 2025-07-05
- mrchucu1/CVE-2022-0847-Docker1★ · 2025-07-11
- muhammad1596/CVE-2022-0847-DirtyPipe-Exploits0★ · 2024-06-06
- mutur4/CVE-2022-08472★ · 2023-09-06
- nanaao/Dirtypipe-exploit0★ · 2022-03-09
- nanaao/dirtyPipe-automaticRoot4★ · 2022-03-11
- notl0cal/dpipe0★ · 2022-08-31
- orsuprasad/CVE-2022-0847-DirtyPipe-Exploits0★ · 2023-02-26
- osungjinwoo/CVE-2022-0847-Dirty-Pipe0★ · 2022-03-10
- parkjunmin/CTI-Search-Criminalip-Search-Tool2★ · 2022-12-27
- patrickl1u/CS179F-Dirty-Pipe-Exploit0★ · 2024-08-11
- pentestblogin/pentestblog-CVE-2022-08470★ · 2022-03-09
- pmihsan/Dirty-Pipe-CVE-2022-08470★ · 2022-12-30
- polygraphene/DirtyPipe-Android851★ · 2022-06-16
- puckiestyle/CVE-2022-08472★ · 2022-03-10
- qdagustian/CVE_2022_08470★ · 2022-03-14
- qqdagustian/CVE_2022_08470★ · 2022-03-14
- r1is/CVE-2022-0847282★ · 2023-02-02
- rexpository/linux-privilege-escalation9★ · 2022-04-18
- s3mPr1linux/CVE_2022_08470★ · 2023-03-25
- sa-infinity8888/Dirty-Pipe-CVE-2022-08473★ · 2022-03-13
- scopion/dirty-pipe1★ · 2022-03-31
- si1ent-le/CVE-2022-08470★ · 2022-03-08
- smile-e3/vehicle-kernel-exploit2★ · 2024-02-29
- solomon12354/CVE-2022-0847-Dirty_Pipe_virus0★ · 2024-05-27
- solomon12354/LockingGirl-----CVE-2022-0847-Dirty_Pipe_virus0★ · 2024-05-27
- stefanoleggio/dirty-pipe-cola0★ · 2023-02-15
- stfnw/Debugging_Dirty_Pipe_CVE-2022-08470★ · 2026-08-01
- tmoneypenny/CVE-2022-08472★ · 2022-12-19
- tufanturhan/CVE-2022-0847-L-nux-PrivEsc0★ · 2022-04-15
- ukmihiran/Rubber_Ducky_Payloads0★ · 2023-01-20
- veritas501/pipe-primitive103★ · 2022-04-05
- versatilexec/CVE_2022_08470★ · 2022-03-14
- wpressly/exploitations0★ · 2022-05-10
- xnderLAN/CVE-2022-08470★ · 2022-04-03
- xndpxs/CVE-2022-08479★ · 2022-03-07
- xsxtw/CVE-2022-08470★ · 2024-05-01
- yoeelingBin/CVE-2022-0847-Container-Escape5★ · 2022-08-22
- SimoesCTT/Chrono-Drip-Temporal-Viscosity-Exploitation-Framework-CVE-2022-0847
- aswanepo/DirtyPipe
- bluedragonsecurity/Linux-Kernel-Dirty-Pipe-Exploitation-Logic-Bug-
- stfnw/reproducer-poc-CVE-2022-0847
- t1ckprivate/CVE-2022-0847-Dirty-Pipe
- xiaoLvChen/CVE-2022-0847
- AuthDev1/ez
- DeEpinGh0st/RootHawkX
- LKSTA/LKSDIKMEN-Cybersecurity-2026
- OBLIVION-EDGE-VR-LLC/Archimedes
- Sebastian294/cve-2026-314311★ · 2026-05-15
- UploadMaster1/DirtyPipe-Android
- bluedragonsecurity/exploits2★ · 2026-07-28
- h4ckm310n/Container-Vulnerability-Exploit
- hackingyseguridad/root3★ · 2026-07-17
- lilshimu/Expl220847
- ramahmdr/DirtyPipe
- renaudbako/Web-Exploitation-Scenario-7
- snowflakeovo/internal-privesc-poc
- songzzzz/dirtyfrag1★ · 2026-06-02
- stenaflow/dirty-pipe-cola
- weto91/GitHub_Search_CVE0★ · 2026-04-27
- yutasato88/DIRTYPIPE