Immunity, Inc.
Name linux_ptrace_setregs
CVE CVE-2013-0871
Exploit Pack CANVAS
Descriptionlinux_ptrace_setregs local root
NotesRepeatability: Infinite
Notes:

Vulnerable kernels <= 3.5 64-bit only.

Tested on:
- Ubuntu 12.10 64bit
- Ubuntu 12.04 64bit
- Debian 6 64bit

Besides running the module inside CANVAS (which requires an existing MOSDEF connection)
one can simply upload the exploit executable (CANVAS_ROOT/exploits/linux_ptrace_setregs/Resources/x)
to the target machine and execute it.

./x -h

Usage: ./x

Options: -h this help message
-x (default: 64)
-n (default: 19)
-i (default: 5)
-s (default: 10)
-u (default: autodetect)
-z (default: 0)
-f (default: random)
-t (default: /tmp)


VENDOR: Linux
CVE Url: http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2013-0871
CVE Name: CVE-2013-0871

Learn more about the CANVAS Exploit Pack here: CANVAS