Exploitation Summary
EIP tracks 2 public exploits for CVE-2016-1825. PoCs published by bazad.
AI-analyzed exploit summary This repository contains a functional exploit for CVE-2016-1825, targeting macOS up to 10.12.1. It leverages a logic bug in IOHIDevice to achieve local privilege escalation (LPE) via arbitrary physical memory read/write operations.
Description
IOHIDFamily in Apple OS X before 10.11.5 allows attackers to execute arbitrary code in a privileged context or cause a denial of service (memory corruption) via a crafted app.
Exploits (2)
This repository contains a functional exploit for CVE-2016-1825, targeting macOS up to 10.12.1. It leverages a logic bug in IOHIDevice to achieve local privilege escalation (LPE) via arbitrary physical memory read/write operations.
physmem is a physical memory inspection tool and local privilege escalation exploit targeting macOS up to 10.12.1. It exploits CVE-2016-1825 or CVE-2016-7617, both logic bugs in IOKit registry properties, allowing arbitrary physical memory read/write and root shell execution.
References (4)
Scores
CVSS:3.0/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H