I tried modifying the exploit not to use /dev/shm... but this is wat happens:
(...)
It says it did exploit but it didn't...
I just modify it the same way (without /dev/shm tmpfs-mounted). And it worked as expected (uid 0 and root access).
Perhaps you inadvertly entered the Twilight zone?
Christophe