EIP-2026-102908
PRE-CVELinux Kernel 3.0.4 - '/proc/interrupts' Password Length Local Information Disclosure
Title source: legacyExploitation Summary
EIP tracks 1 public exploit for EIP-2026-102908. PoCs published by Vasiliy Kulikov.
AI-analyzed exploit summary This PoC exploits a local information disclosure vulnerability in Linux kernels <= 3.1 by monitoring keyboard interrupts via /proc/interrupts to infer password lengths. It works by tracking interrupt counts for the i8042 keyboard controller while a victim process (e.g., gksu) runs.
Description
Linux Kernel 3.0.4 - '/proc/interrupts' Password Length Local Information Disclosure
Exploits (1)
This PoC exploits a local information disclosure vulnerability in Linux kernels <= 3.1 by monitoring keyboard interrupts via /proc/interrupts to infer password lengths. It works by tracking interrupt counts for the i8042 keyboard controller while a victim process (e.g., gksu) runs.