CVE-2021-42008
HIGHLinux Kernel 2.6.12-4.4.282 - Authenticated Out-of-bounds Write in 6pack Decode Function
Title source: llmExploitation Summary
EIP tracks 3 public exploits for CVE-2021-42008. PoCs published by 0xdevil, numanturle, WhatsWrongAndWhy.
AI-analyzed exploit summary This is a working exploit for CVE-2021-42008, targeting a 16-year-old vulnerability in the Linux 6pack driver. The exploit leverages userfaultfd and message queue manipulation to achieve local privilege escalation (LPE) on Debian 11 with kernel 5.10.0-8-amd64.
Description
The decode_data function in drivers/net/hamradio/6pack.c in the Linux kernel before 5.13.13 has a slab out-of-bounds write. Input from a process that has the CAP_NET_ADMIN capability can lead to root access.
Exploits (3)
This is a working exploit for CVE-2021-42008, targeting a 16-year-old vulnerability in the Linux 6pack driver. The exploit leverages userfaultfd and message queue manipulation to achieve local privilege escalation (LPE) on Debian 11 with kernel 5.10.0-8-amd64.
This is a working exploit for CVE-2021-42008, targeting a 16-year-old vulnerability in the Linux 6pack driver. The exploit leverages userfaultfd and message queue manipulation to achieve local privilege escalation (LPE) on Debian 11 with kernel 5.10.0-8-amd64.
The provided file labeled as CVE-2021-42008 is not a legitimate exploit PoC but a compiled ELF binary disguised as source code. The file contains obfuscated machine code with no clear vulnerability context, and the README is empty, offering no technical details or analysis.
References (5)
Scores
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H