The 2016 Pwnie Nominee For Best Privilege Escalation Bug

SETFKEY FreeBSD Kernel Vulnerability (CVE-2016-1886)

Credit: CTurt

1999 was a good year for bugs and hacking. Many of us even wish that it were still 1999. 1999 have come and gone, but at least some of its bugs are still with us. CTurt found a nice ’99 vintage in the FreeBSD kernel AT keyboard driver, which could be used to get root on every version of FreeBSD since then and even fun things like the PlayStation 4 that uses it. Who would have thought in 1999 that, almost 20 years later, the largest deployment of FreeBSD would be a video game console?

SETFKEY FreeBSD Kernel Vulnerability (CVE-2016-1886)