EIP-2026-102813
PRE-CVEDebian bsdmainutils 6.0.14 - Calendar Information Disclosure
Title source: legacyExploitation Summary
EIP tracks 1 public exploit for EIP-2026-102813. PoCs published by Steven Van Acker.
AI-analyzed exploit summary This exploit leverages a lack of file authorization checks in the calendar utility of bsdmainutils on Debian systems. By creating a malicious calendar file with embedded content from sensitive files (e.g., /etc/shadow), an attacker can disclose arbitrary file contents when the utility is run as superuser with the '-a' argument.
Description
Debian bsdmainutils 6.0.14 - Calendar Information Disclosure
Exploits (1)
This exploit leverages a lack of file authorization checks in the calendar utility of bsdmainutils on Debian systems. By creating a malicious calendar file with embedded content from sensitive files (e.g., /etc/shadow), an attacker can disclose arbitrary file contents when the utility is run as superuser with the '-a' argument.