Metarget / metarget

Metarget is a framework providing automatic constructions of vulnerable infrastructures.
Apache License 2.0
1.05k stars 163 forks source link

cve-2017-1000112 #118

Open painsAgains opened 1 year ago

painsAgains commented 1 year ago

当我利用metarget安装cve-2017-1000112的环境后,利用编译后的poc仍然无法完成逃逸。

[In Docker]
uname -a 
Linux 7c17882c97af 4.8.0-34-generic #36~16.04.1-Ubuntu SMP Wed Dec 21 18:55:08 UTC 2016 x86_64 x86_64 x86_64 GNU/Linux
./poc
[^] starting
[=] running KASLR defeat exploit (CVE-2017-18344)
[0] enumerating divide_error() location (CVE-2017-18344)
[>] setting up proc reader
[+] done
[>] checking /proc/cpuinfo
[-] SMAP detected, no bypass available, aborting

poc内容如link所示