Exploitation Summary
EIP tracks 9 public exploits for CVE-2016-8655.
PoCs published by Metasploit, rebel, bcoles, including Metasploit module exploits/linux/local/af_packet_chocobo_root_priv_esc.
AI-analyzed exploit summary This Metasploit module exploits a race condition and use-after-free vulnerability in the Linux kernel's AF_PACKET implementation (CVE-2016-8655) to achieve local privilege escalation. It includes bypasses for SMEP, SMAP, and KASLR, and targets Ubuntu-based systems with vulnerable kernel versions.
Description
Race condition in net/packet/af_packet.c in the Linux kernel through 4.8.12 allows local users to gain privileges or cause a denial of service (use-after-free) by leveraging the CAP_NET_RAW capability to change a socket version, related to the packet_set_ring and packet_setsockopt functions.
Exploits (9)
This Metasploit module exploits a race condition and use-after-free vulnerability in the Linux kernel's AF_PACKET implementation (CVE-2016-8655) to achieve local privilege escalation. It includes bypasses for SMEP, SMAP, and KASLR, and targets Ubuntu-based systems with vulnerable kernel versions.
This exploit leverages a race condition in the Linux kernel's AF_PACKET implementation (CVE-2016-8655) to achieve local privilege escalation. It manipulates kernel memory to overwrite critical structures, ultimately gaining root access.
This is a working exploit for CVE-2016-8655, a race condition in the Linux kernel's AF_PACKET implementation. It includes KASLR and SMEP/SMAP bypasses to achieve local privilege escalation on vulnerable Ubuntu kernels.
This repository contains a functional exploit for CVE-2016-8655, targeting the Goldfish Android emulator. The exploit leverages a race condition to achieve local privilege escalation (LPE) by manipulating kernel memory structures.
This repository contains a functional exploit for CVE-2016-8655, a race condition vulnerability in the Linux kernel's AF_PACKET implementation. The exploit leverages a race condition to achieve local privilege escalation (LPE) on vulnerable Ubuntu systems running kernel versions 4.4.0-51 and earlier.
The repository contains Ansible playbooks for system configuration and user setup but lacks any exploit code or technical details related to CVE-2016-8655. It appears to be a placeholder or mislabeled repository.
This repository provides an analysis of CVE-2016-8655, a Linux privilege escalation vulnerability. It includes references, goals for deeper analysis, and instructions for debugging the kernel using QEMU and symbols.
The repository contains functional exploit code for CVE-2016-8655, a race condition in the Linux kernel's AF_PACKET implementation. The PoC leverages a race between setting socket options to trigger a use-after-free, potentially leading to privilege escalation.
This Metasploit module exploits a race condition and use-after-free vulnerability in the AF_PACKET implementation of the Linux kernel (CVE-2016-8655) to achieve local privilege escalation to root. It includes bypasses for SMEP and KASLR, and targets Ubuntu-based systems with specific kernel versions.
References (34)
Scores
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H