CVE-2016-0728
HIGH 7.8EPSS 3.4%
The join_session_keyring function in security/keys/process_keys.c in the Linux kernel before 4.4.1 mishandles object references in a certain error case, which allows local users to gain privileges or cause a denial of service (integer overflow and use-after-free) via crafted keyctl commands.
- CVSS v3.1
- 7.8 HIGH
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H - CVSS v2.0
- 7.2 HIGH
AV:L/AC:L/Au:N/C:C/I:C/A:C - EPSS
- 3.44% chance of exploitation in the next 30 days, 88th percentile
- Published
- 2016-02-08
- Updated
- 2024-08-05
Proof-of-concept exploits (16)
- http://perception-point.io/2016/01/14/analysis-and-exploitation-of-a-linux-kernel-vulnera…
- bittorrent3389/cve-2016-07287★ · 2016-03-16
- bjzz/cve_2016_0728_exploit0★ · 2016-01-20
- fedoraredteam/elem28★ · 2018-01-20
- fochess/cve_2016_07283★ · 2016-01-22
- googleweb/CVE-2016-07280★ · 2016-01-20
- hal0taso/CVE-2016-07280★ · 2017-05-24
- isnuryusuf/cve_2016_07280★ · 2016-01-20
- kennetham/cve_2016_07283★ · 2016-01-20
- mfer/cve_2016_07281★ · 2016-01-21
- nardholio/cve-2016-072822★ · 2018-12-31
- neuschaefer/cve-2016-0728-testbed5★ · 2016-01-29
- redteam-project/lem45★ · 2022-05-09
- sidrk01/cve-2016-07280★ · 2024-03-26
- sunnyjiang/cve_2016_07286★ · 2016-01-21
- th30d00r/Linux-Vulnerability-CVE-2016-0728-and-Exploit0★ · 2020-05-12