### [CVE-2016-2568](https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2016-2568) ![](https://img.shields.io/static/v1?label=Product&message=n%2Fa&color=blue) ![](https://img.shields.io/static/v1?label=Version&message=n%2Fa%20&color=brightgreen) ![](https://img.shields.io/static/v1?label=Vulnerability&message=n%2Fa&color=brightgreen) ### Description pkexec, when used with --user nonpriv, allows local users to escape to the parent session via a crafted TIOCSTI ioctl call, which pushes characters to the terminal's input buffer. ### POC #### Reference - https://ubuntu.com/security/CVE-2016-2568 #### Github - https://github.com/11notes/docker-github-runner - https://github.com/ARPSyndicate/cvemon - https://github.com/hartwork/antijack