Skip to content

Demonstrate some functionalities of Morion by generating an exploit for CVE-2022-27646 (stack buffer overflow on Netgear R6700v3 routers).

License

Notifications You must be signed in to change notification settings

cyber-defence-campus/netgear_r6700v3_circled

Folders and files

NameName
Last commit message
Last commit date

Latest commit

 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 

Repository files navigation

Exploiting a Stack Buffer Overflow on the NETGEAR R6700v3 (CVE-2022-27646) with the Help of Symbolic Execution

Introduction

This repository is intended to demonstrate some functionalities of Morion, a proof-of-concept (PoC) tool to experiment with symbolic execution on real-world (ARMv7) binaries. We show some of Morion's capabilities by giving a concrete example, namely, how it can assist during the process of creating a working exploit for CVE-2022-27646 - a stack buffer overflow vulnerability in NETGEAR R6700v3 routers (affected version 1.0.4.120_10.0.91, fixed in later versions).

The repository contains all files (under firmware, libcircled, morion and server) needed to follow along (e.g. scripts to emulate the vulnerable ARMv7 binary) and reproduce the discussed steps of how to use Morion. The documentation (under docs and logs), to demonstrate Morion's workings, contains the following chapters:

  1. Setup - Explains how to setup analysis (running Morion) and target systems (running target binary circled).
  2. Emulation - Explains how to emulate the vulnerable target binary.
  3. Tracing - Explains how to record a concrete execution trace of the target binary using Morion.
  4. Symbolic Execution - Explains how to use Morion for analyzing the recorded trace symbolically.
  5. Vulnerability CVE-2022-27646 - Provides some background information to the targeted vulnerability.
  6. Exploitation - Explains how Morion can assist during the process of crafting an exploit.

References

Authors

About

Demonstrate some functionalities of Morion by generating an exploit for CVE-2022-27646 (stack buffer overflow on Netgear R6700v3 routers).

Topics

Resources

License

Stars

Watchers

Forks