Blog | G5 Cyber Security

CVE-2016-8655 A new 5-Year-Old flaw found in the Linux Kernel

A security expert discovered a serious five-year-old privilege-escalation vulnerability, tracked as CVE-2016-8655, that affects every Linux distro. The vulnerability could be exploited by an unprivileged local user to gain root privileges by exploiting a race condition in the af_packet implementation in the Linux kernel. An attacker can use the Petterssons exploit to run arbitrary malicious code with administrative privileges on the targeted PC or cause a denial of service. The bug was introduced on Aug 19, 2011: https://://github.com/torvalds/linux/commit/f6fb8f100b807378fda19e83e5ac6828b638603a”]

Source: https://securityaffairs.co/wordpress/54168/hacking/cve-2016-8655-linux-kernel.html

Exit mobile version