vendor:
Game Music Emu
by:
Scary Beast Security
9,3
CVSS
HIGH
Buffer Overflow
120
CWE
Product Name: Game Music Emu
Affected Version From: Fedora 25
Affected Version To: Ubuntu 16.04 LTS
Patch Exists: Yes
Related CWE: N/A
CPE: N/A
Metasploit:
N/A
Other Scripts:
N/A
Tags: N/A
CVSS Metrics: N/A
Nuclei References:
N/A
Nuclei Metadata: N/A
Platforms Tested: Linux
2016
Compromising Linux using SNES
This exploit abuses cascading subtle side effects of an emulation misstep that at first appears extremely difficult to exploit but ends up presenting beautiful and 100% reliable exploitation possibilities. It is a full, working, reliable, 0day exploit for current Linux distributions (Ubuntu 16.04 LTS and Fedora 25). It’s a full drive-by download in the context of Fedora.
Mitigation:
Ensure that all software is up to date and patched with the latest security updates.