A flaw was found in the way the "flags" member of the new pipe buffer structure was lacking proper initialization in copy_page_to_iter_pipe and push_pipe functions in the Linux kernel and could thus contain stale values. An unprivileged local user could use this flaw to write to pages in the page cache backed by read only files and as such escalate their privileges on the system.
https://www.suse.com/support/kb/doc/?id=000020603
https://security.netapp.com/advisory/ntap-20220325-0005/
https://psirt.global.sonicwall.com/vuln-detail/SNWLID-2022-0015
https://cert-portal.siemens.com/productcert/pdf/ssa-222547.pdf
https://bugzilla.redhat.com/show_bug.cgi?id=2060795
http://packetstormsecurity.com/files/176534/Linux-4.20-KTLS-Read-Only-Write.html
https://securelist.com/vulnerabilities-and-exploits-in-q2-2026/121091/
https://thehackernews.com/2026/08/uat-10147-uses-ai-to-scale-server.html
https://securelist.com/vulnerabilities-and-exploits-in-q3-2025/118197/
https://securelist.com/vulnerabilities-and-exploits-in-q2-2025/117333/
https://securelist.com/vulnerabilities-and-exploits-in-q1-2025/116624/
https://www.edgescan.com/wp-content/uploads/2024/03/2023-Vulnerability-Statistics-Report.pdf
https://securelist.com/vulnerabilities-and-exploits-in-q4-2024/115761/
https://securelist.com/vulnerability-exploit-report-q2-2024/113455/
https://thehackernews.com/2024/06/pakistani-hackers-use-disgomoji-malware.html
https://www.volexity.com/blog/2024/06/13/disgomoji-malware-used-to-target-indian-government/
https://isc.sans.edu/diary/rss/32968
https://thehackernews.com/2026/04/new-linux-copy-fail-vulnerability.html
https://xint.io/blog/copy-fail-linux-distributions#the-fix-6
https://xint.io/blog/copy-fail-linux-distributions
https://www.pwc.com/gx/en/issues/cybersecurity/cyber-threat-intelligence/tortoise-and-malwahare.html
https://www.tenable.com/cyber-exposure/tenable-2022-threat-landscape-report
https://github.com/snowflakeovo/internal-privesc-poc
https://github.com/keenglomerate/bastion_ai
https://github.com/Athology0000/cve-lab
https://github.com/OleksandrBlack/cve_centos
https://github.com/stov3/fluescan
https://github.com/V0IDNETWORK/CVE-2026-46331
https://github.com/Quaerendir/linux-pagecache-cve-audit
https://github.com/Quaerendir/cve-2026-46331-audit
https://github.com/RaffayAKhan/CVE-Threat-Analysis-and-Risk-Assessment
https://github.com/harshweb-cyber/Netscout
https://github.com/t1ckprivate/CVE-2022-0847-Dirty-Pipe
https://github.com/antinest/CVEs
https://github.com/kuzeyardabulut/CVE-2024-1065
https://github.com/BolajiEdu/cve-network-scanner
https://github.com/AtlasVector/Dirty-Frag-CVE-2026-43284
https://github.com/Maxime288/CVE-2026-31431-Copy-Fail-R-pertoire-de-Pr-vention
https://github.com/Sebastian294/cve-2026-31431
https://github.com/KaraZajac/DIRTYFAIL
https://github.com/gum3t/cve_exploits
https://github.com/darioomatos/cve-2026-31431-copyfail
https://github.com/Liverwortenuresis371/copyfail-rs
https://github.com/g1nt0n1x/copy-fail-CVE-2026-31431-shell
https://github.com/mgiay/CVE_2026_31431_FIXED
https://github.com/gaganhm3018-art/CVE-2022-0847-Dirty-Pipe-
https://github.com/krish-foren6/CVE-2026-31431-Report-Copy-fail-Vulnerability-
https://github.com/TheMalwareGuardian/CVE-2026-31431
https://github.com/diemoeve/copyfail-rs
https://github.com/nextgensoumen/soc-pulse
https://github.com/bintab1e/cve-analysis
https://github.com/nastya-chit/Cve-Automated-Triage
https://github.com/JeevanAnand1202/Penetration-Test
https://github.com/strikoder/LinEnum-ng
https://github.com/SyedNabeel98/CVE-writeups
https://github.com/real-tim-johnston/megaquagga-pentest-report
https://github.com/subhajit-sudo/vulnscan
https://github.com/Su1ph3r/Cepheus
https://github.com/SimoesCTT/Chrono-Drip-Temporal-Viscosity-Exploitation-Framework-CVE-2022-0847
https://github.com/daniel7-li/cve-scanner
https://github.com/bluedragonsecurity/Linux-Kernel-Dirty-Pipe-Exploitation-Logic-Bug-
https://github.com/xiaoLvChen/CVE-2022-0847
https://github.com/Syedomershah99/CVE-semantic-IEEE
https://github.com/CerberusMrX/Cerberus-React2Shell-Scanner-Exploit
https://github.com/NazrinDuck/CVE-Reproduce
https://github.com/DelphineTan/CVE-Research-Writeups
https://github.com/thelo4tpe0ple/fuckCVE
https://github.com/qiushan996/poctracker
https://github.com/nemocyberworld/Offensive-Security-Research-Hub
https://github.com/morgenm/dirtypipe
https://github.com/r3ds3ctor/PulseCheck
https://github.com/schoi1337/dockout
https://github.com/jlucas8/cve-test-scripts
https://github.com/PuddinCat/GithubRepoSpider
https://github.com/sinkthemall/CVE-PoC
https://github.com/cypherlobo/DirtyPipe-BSI
https://github.com/RogelioPumajulca/CVE-2022-0847
https://github.com/Mephierr/DirtyPipe_exploit
https://github.com/mithunmadhukuttan/Dirty-Pipe-Exploit
https://github.com/JustinYe377/CTF-CVE-2022-0847
https://github.com/ShaharyarJalaluddin/cve20220847
https://github.com/talent-x90c/cve_list
https://github.com/XiaozaYa/CVE-Recording
https://github.com/n3rada/DirtyPipe
https://github.com/pashayogi/DirtyPipe
https://github.com/Ha0-Y/kernel-exploit-cve
https://github.com/Ha0-Y/LinuxKernelExploits
https://github.com/h4ckm310n/CVE-2022-0847-eBPF
https://github.com/h0pe-ay/Vulnerability-Reproduction
https://github.com/justikail/root
https://github.com/arttnba3/Linux-kernel-exploitation
https://github.com/parkjunmin/CTI-Search-Criminalip-Search-Tool
https://github.com/DataFox/CVE-2022-0847
https://github.com/kwxk/Rutgers_Cyber_Range
https://github.com/Zen-ctrl/Rutgers_Cyber_Range
https://github.com/qwert419/linux-
https://github.com/Turzum/ps-lab-cve-2022-0847
https://github.com/badboy-sft/Dirty-Pipe-Oneshot
https://github.com/b4dboy17/Dirty-Pipe-Oneshot
https://github.com/z3dc0ps/ROCKING-CVE
https://github.com/Gustavo-Nogueira/Dirty-Pipe-Exploits
https://github.com/yoeelingBin/CVE-2022-0847-Container-Escape
https://github.com/edr1412/Dirty-Pipe
https://github.com/airbus-cert/dirtypipe-ebpf_detection
https://github.com/greenhandatsjtu/CVE-2022-0847
https://github.com/ih3na/debian11-dirty_pipe-patcher
https://github.com/IHenakaarachchi/debian11-dirty_pipe-patcher
https://github.com/VinuKalana/DirtyPipe-CVE-2022-0847
https://github.com/isaiahsimeone/COMP3320-VAPT
https://github.com/z3dc0ps/awesome-linux-exploits
https://github.com/mhanief/dirtypipe
https://github.com/drapl0n/dirtypipe
https://github.com/scopion/dirty-pipe
https://github.com/nek0x/dirty-pipe
https://github.com/Nekoox/dirty-pipe
https://github.com/Patocoh/Research-Dirty-Pipe
https://github.com/DanaEpp/pwncat_dirtypipe
https://github.com/MrP1xel/CVE-2022-0847-dirty-pipe-kernel-checker
https://github.com/realbatuhan/dirtypipetester
https://github.com/sa-infinity8888/Dirty-Pipe-CVE-2022-0847
https://github.com/nanaao/dirtyPipe-automaticRoot
https://github.com/terabitSec/dirtyPipe-automaticRoot
https://github.com/V0WKeep3r/CVE-2022-0847-DirtyPipe-Exploit
https://github.com/babyshen/CVE-2022-0847
https://github.com/Al1ex/CVE-2022-0847
https://github.com/4luc4rdr5290/CVE-2022-0847
https://github.com/basharkey/CVE-2022-0847-dirty-pipe-checker
https://github.com/0xIronGoat/dirty-pipe
https://github.com/febinrev/dirtypipez-exploit
https://github.com/cspshivam/CVE-2022-0847-dirty-pipe-exploit
https://github.com/antx-code/CVE-2022-0847
https://github.com/crowsec-edtech/Dirty-Pipe
https://github.com/carlosevieira/Dirty-Pipe
https://github.com/r1is/CVE-2022-0847
https://github.com/imfiver/CVE-2022-0847
https://github.com/bbaranoff/CVE-2022-0847
https://github.com/Udyz/CVE-2022-0847
https://www.cisa.gov/known-exploited-vulnerabilities-catalog?field_cve=CVE-2022-0847
http://packetstormsecurity.com/files/166258/Dirty-Pipe-Local-Privilege-Escalation.html
http://packetstormsecurity.com/files/166230/Dirty-Pipe-SUID-Binary-Hijack-Privilege-Escalation.html
http://packetstormsecurity.com/files/166229/Dirty-Pipe-Linux-Privilege-Escalation.html
Published: 2022-03-10
Updated: 2026-06-17
Named Vulnerability: DirtyPipeNamed Vulnerability: Dirty PipeKnown Exploited Vulnerability (KEV)
Base Score: 7.2
Vector: CVSS2#AV:L/AC:L/Au:N/C:C/I:C/A:C
Severity: High
Base Score: 7.8
Vector: CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
Severity: High
EPSS: 0.89721