EIP-2026-102994
PRE-CVESilly Poker 0.25.5 - Local HOME Environment Variable Buffer Overrun
Title source: legacyExploitation Summary
EIP tracks 1 public exploit for EIP-2026-102994. PoCs published by demz.
AI-analyzed exploit summary This exploit leverages a local stack-based buffer overflow in Silly Poker v0.25.5 by overwriting the return address with a NOP sled and shellcode to execute arbitrary commands (setuid(0) + execve('/bin/sh')). The exploit targets the HOME environment variable to trigger the vulnerability.
Description
Silly Poker 0.25.5 - Local HOME Environment Variable Buffer Overrun
Exploits (1)
This exploit leverages a local stack-based buffer overflow in Silly Poker v0.25.5 by overwriting the return address with a NOP sled and shellcode to execute arbitrary commands (setuid(0) + execve('/bin/sh')). The exploit targets the HOME environment variable to trigger the vulnerability.