peter bassill · operator
$ cve CVE-2012-0056 JSON

CVE-2012-0056 EXPLOIT

6.9
MEDIUM · CVSS 2.0 · EPSS 10.8% (pctl 96)

Patch early

A public exploit exists.

Description

The mem_write function in the Linux kernel before 3.2.2, when ASLR is disabled, does not properly check permissions when writing to /proc/<pid>/mem, which allows local users to gain privileges by modifying process memory, as demonstrated by Mempodipper.

Scoring

CVSS6.9 (MEDIUM, v2.0)
VectorAV:L/AC:M/Au:N/C:C/I:C/A:C
EPSS10.75% — more likely to be exploited than 96% of all CVEs
WeaknessCWE-264
On CISA KEVno
Public exploityes
Published2012-01-27
Last modified2026-06-16

Affected (1)

VendorProduct
linuxlinux kernel

Public exploits

References

→ the Explorer  ·  watch your stack  ·  NVD