EIP-2026-102795
PRE-CVECalibre E-Book Reader - Local Privilege Escalation (2)
Title source: legacyExploitation Summary
EIP tracks 1 public exploit for EIP-2026-102795. PoCs published by zx2c4.
AI-analyzed exploit summary This exploit leverages a vulnerability in Calibre's mount helper to mount a crafted vfat filesystem over /etc, allowing an attacker to modify /etc/passwd and gain root access with the password 'toor'. It demonstrates a local privilege escalation (LPE) by abusing improper filesystem mounting permissions.
Description
Calibre E-Book Reader - Local Privilege Escalation (2)
Exploits (1)
This exploit leverages a vulnerability in Calibre's mount helper to mount a crafted vfat filesystem over /etc, allowing an attacker to modify /etc/passwd and gain root access with the password 'toor'. It demonstrates a local privilege escalation (LPE) by abusing improper filesystem mounting permissions.