Exploitation Summary
EIP tracks 1 public exploit for EIP-2026-102635. PoCs published by Google Security Research.
AI-analyzed exploit summary This exploit demonstrates a Linux kernel vulnerability (EIP-2026-125612) involving a `_refcount` overflow in `struct page` via FUSE, requiring ~140GiB RAM. It uses AIO and FUSE to create excessive page references, leading to a crash.
Description
Linux - 'page->_refcount' Overflow via FUSE
Exploits (1)
exploitdb
WORKING POC
VERIFIED
by Google Security Research · textdoslinux
https://www.exploit-db.com/exploits/46745
This exploit demonstrates a Linux kernel vulnerability (EIP-2026-125612) involving a `_refcount` overflow in `struct page` via FUSE, requiring ~140GiB RAM. It uses AIO and FUSE to create excessive page references, leading to a crash.
Classification
Working Poc 100%
Attack Type
Dos
Complexity
Complex
Reliability
Reliable
Target:
Linux kernel 4.19.0-1-amd64 (Debian Buster)
No auth needed
Prerequisites:
~140GiB RAM · FUSE filesystem · AIO support · unprivileged user namespace creation
MITRE ATT&CK
devstral-2 · analyzed Feb 18, 2026
Full analysis →
Details
Status
pre_cve
Tracked Since
Feb 18, 2026