EIP-2026-102894
PRE-CVELinux Kernel (PonyOS 3.0) - TTY 'ioctl()' Local Privilege Escalation
Title source: legacyExploitation Summary
EIP tracks 1 public exploit for EIP-2026-102894. PoCs published by Hacker Fantastic.
AI-analyzed exploit summary This exploit leverages a kernel vulnerability in PonyOS <= 3.0 via the tty ioctl() function to patch the setuid system call, allowing privilege escalation to root. It uses arbitrary memory read/write via the winsize ioctl() to achieve this.
Description
Linux Kernel (PonyOS 3.0) - TTY 'ioctl()' Local Privilege Escalation
Exploits (1)
exploitdb
WORKING POC
by Hacker Fantastic · clocallinux
https://www.exploit-db.com/exploits/37183
This exploit leverages a kernel vulnerability in PonyOS <= 3.0 via the tty ioctl() function to patch the setuid system call, allowing privilege escalation to root. It uses arbitrary memory read/write via the winsize ioctl() to achieve this.
Classification
Working Poc 90%
Attack Type
Lpe
Complexity
Moderate
Reliability
Reliable
Target:
PonyOS <= 3.0
No auth needed
Prerequisites:
Local access to a vulnerable PonyOS system
MITRE ATT&CK
devstral-2 · analyzed Feb 16, 2026
Full analysis →
Details
Status
pre_cve
Tracked Since
Feb 18, 2026