CVE-2016-10225
HIGHAllwinner linux-3.4-sunxi - Local Privilege Escalation via sunxi_debug Procfs Interface
Title source: llmExploitation Summary
EIP tracks 1 public exploit for CVE-2016-10225.
PoCs published by h00die <[email protected]>, KotCzarny, including Metasploit module exploits/multi/local/allwinner_backdoor.
AI-analyzed exploit summary This Metasploit module exploits a debug backdoor in Allwinner SoC devices running Kernel 3.4, allowing local privilege escalation by writing to /proc/sunxi_debug/sunxi_debug. It generates and executes a payload to achieve root access.
Description
The sunxi-debug driver in Allwinner 3.4 legacy kernel for H3, A83T and H8 devices allows local users to gain root privileges by sending "rootmydevice" to /proc/sunxi_debug/sunxi_debug.
Exploits (1)
This Metasploit module exploits a debug backdoor in Allwinner SoC devices running Kernel 3.4, allowing local privilege escalation by writing to /proc/sunxi_debug/sunxi_debug. It generates and executes a payload to achieve root access.
References (6)
Scores
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H