EIP-2026-103352

PRE-CVE

MySQL User-Defined (Linux) (x86) - 'sys_exec' Local Privilege Escalation

Title source: legacy
STIX 2.1

Exploitation Summary

EIP tracks 1 public exploit for EIP-2026-103352. PoCs published by d7x.

AI-analyzed exploit summary This exploit leverages MySQL's User-Defined Function (UDF) feature to achieve local privilege escalation on Linux systems by injecting shellcode. It is based on the raptor_udf.c exploit and uses shellcode derived from Metasploit.

Description

MySQL User-Defined (Linux) (x86) - 'sys_exec' Local Privilege Escalation

Exploits (1)

exploitdb WORKING POC
by d7x · pythonlocallinux_x86
https://www.exploit-db.com/exploits/46249

This exploit leverages MySQL's User-Defined Function (UDF) feature to achieve local privilege escalation on Linux systems by injecting shellcode. It is based on the raptor_udf.c exploit and uses shellcode derived from Metasploit.

Classification
Working Poc 95%
Attack Type
Lpe
Complexity
Moderate
Reliability
Reliable
Target: MySQL 4.x/5.x
Auth required
Prerequisites: Local access to MySQL server · Ability to create UDFs
devstral-2 · analyzed Feb 16, 2026 Full analysis →

Details

Status pre_cve
Tracked Since Feb 18, 2026