cve/2016/CVE-2016-9754.md
2024-05-26 14:27:05 +02:00

722 B

CVE-2016-9754

Description

The ring_buffer_resize function in kernel/trace/ring_buffer.c in the profiling subsystem in the Linux kernel before 4.6.1 mishandles certain integer calculations, which allows local users to gain privileges by writing to the /sys/kernel/debug/tracing/buffer_size_kb file.

POC

Reference

No PoCs from references.

Github