Skip to content

Commit b613473

Browse files
committed
MS16-016
1 parent c25cb80 commit b613473

File tree

6 files changed

+29
-0
lines changed

6 files changed

+29
-0
lines changed

MS16-016/BSoD.exe

11 KB
Binary file not shown.

MS16-016/EoP.zip

8.52 KB
Binary file not shown.

MS16-016/EoP_variant.zip

8.66 KB
Binary file not shown.

MS16-016/README.md

+29
Original file line numberDiff line numberDiff line change
@@ -0,0 +1,29 @@
1+
# MS16-016
2+
3+
- The POC of MS16-016 was from [@Tamás Koczka](https://github.com/koczkatamas/CVE-2016-0051)
4+
- A variant of this PoC [3hexx0r](https://github.com/hexx0r/CVE-2016-0051)
5+
6+
7+
Vulnerability reference:
8+
* [MS16-016](https://technet.microsoft.com/en-us/library/security/ms16-016.aspx)
9+
* [CVE-2016-0051](http://www.cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2016-0051)
10+
11+
### EoP to SYSTEM on Windows 7 SP1 x86
12+
13+
![Elevation of Privilege on Windows 7 x86 before the patch](eop_win7x86.gif)
14+
15+
### BSoD on a Windows 10 x64
16+
17+
![Crash on a Windows 10 x64 before the patch](bsod_win10x64.gif)
18+
19+
### Links
20+
21+
* [Microsoft Security Bulletin MS16-016](https://technet.microsoft.com/en-us/library/security/ms16-016.aspx)
22+
* [Microsoft Acknowledgements page](https://technet.microsoft.com/library/security/mt674627.aspx)
23+
24+
You can find both exploits on Exploit-db
25+
1) koczkatamas
26+
https://www.exploit-db.com/exploits/39432/
27+
28+
2) hex0r
29+
https://www.exploit-db.com/exploits/39788/

MS16-016/bsod_win10x64.gif

1.22 MB
Loading

MS16-016/eop_win7x86.gif

1.94 MB
Loading

0 commit comments

Comments
 (0)