CVE-2016-0728

HIGH EXPLOITED

Linux kernel <4.4.1 - Privilege Escalation/DoS

Title source: llm

Description

The join_session_keyring function in security/keys/process_keys.c in the Linux kernel before 4.4.1 mishandles object references in a certain error case, which allows local users to gain privileges or cause a denial of service (integer overflow and use-after-free) via crafted keyctl commands.

Exploits (16)

exploitdb WORKING POC
by Federico Bento · clocallinux
https://www.exploit-db.com/exploits/40003
exploitdb WORKING POC
by Perception Point Team · clocallinux
https://www.exploit-db.com/exploits/39277
nomisec WORKING POC 22 stars
by nardholio · remote
https://github.com/nardholio/cve-2016-0728
nomisec WORKING POC 7 stars
by bittorrent3389 · remote
https://github.com/bittorrent3389/cve-2016-0728
nomisec WORKING POC 5 stars
by neuschaefer · dos
https://github.com/neuschaefer/cve-2016-0728-testbed
nomisec WORKING POC 3 stars
by kennetham · dos
https://github.com/kennetham/cve_2016_0728
nomisec WORKING POC 1 stars
by sugarvillela · dos
https://github.com/sugarvillela/CVE
gitlab WORKING POC
by dominicusin · local
https://gitlab.com/dominicusin/cve_2016_0728
nomisec WORKING POC
by sidrk01 · local
https://github.com/sidrk01/cve-2016-0728
nomisec WRITEUP
by tndud042713 · poc
https://github.com/tndud042713/cve
nomisec WRITEUP
by th30d00r · poc
https://github.com/th30d00r/Linux-Vulnerability-CVE-2016-0728-and-Exploit
nomisec WORKING POC
by hal0taso · poc
https://github.com/hal0taso/CVE-2016-0728
nomisec WORKING POC
by googleweb · dos
https://github.com/googleweb/CVE-2016-0728

References (42)

... and 22 more

Scores

CVSS v3 7.8
EPSS 0.5084
EPSS Percentile 97.9%
Attack Vector LOCAL
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H

Details

VulnCheck KEV 2016-08-04
Status published
Products (31)
canonical/ubuntu_linux 12.04
canonical/ubuntu_linux 14.04
canonical/ubuntu_linux 15.04
canonical/ubuntu_linux 15.10
debian/debian_linux 8.0
google/android 4.0
google/android 4.0.1
google/android 4.0.2
google/android 4.0.3
google/android 4.0.4
... and 21 more
Published Feb 08, 2016
Tracked Since Feb 18, 2026