CVE-2012-0056
The mem_write function in the Linux kernel before 3.2.2, when ASLR is disabled, does not properly check permissions when writing to /proc/<pid>/mem, which allows local users to gain privileges by modifying process memory, as demonstrated by Mempodipper.
- Affected products
- Centos, Linux Kernel, Red Hat
- Linux Linux Kernel
- < 3.0.18, 3.2.2
- Fix
- Available
- CVSS 2.0
- 6.9 MEDIUM
- EPSS
- 10.8% (96th percentile)
- Weakness
- CWE-264
- NVD status
- Modified
- Published
- 2012-01-27
CVE-2012-0056 at NVD
15 known exploits for CVE-2012-0056
Proof-of-concept code and exploit modules indexed by Sploitus
Linux_Exploit_Suggester
CVE-2012-0056
CVE-2012-0056
Linux Local Root => 2.6.39 (32-bit & 64-bit) - Mempodipper #2
Linux Local Root => 2.6.39 (32-bit & 64-bit) - Mempodipper
[Linux Exploit Suggester] Grab the Linux Operating Systems release version, and return a suggestive list of possible exploits
Linux Kernel 2.6.18-374 Local root Exploit
Linux kernel 2.6.x write本地权限提升漏洞(CVE-2012-0056)
Immunity Canvas: CVE_2012_0056
Mempodipper - Linux Local Root for >=2.6.39, 32-bit and 64-bit
Linux Kernel 2.6.39 3.2.2 (Gentoo Ubuntu x86x64) - Mempodipper Local Privilege Escalation (1)
Linux Kernel 2.6.39 < 3.2.2 (Gentoo / Ubuntu x86/x64) - 'Mempodipper' Local Privilege Escalation (1)
Mempodipper - Linux Local Root for >=2.6.39, 32-bit and 64-bit
Linux Kernel 2.6.39 3.2.2 (x86x64) - Mempodipper Local Privilege Escalation (2)
Linux Kernel 2.6.39 < 3.2.2 (x86/x64) - 'Mempodipper' Local Privilege Escalation (2)