EIP-2026-103352
PRE-CVEMySQL User-Defined (Linux) (x86) - 'sys_exec' Local Privilege Escalation
Title source: legacyExploitation Summary
EIP tracks 1 public exploit for EIP-2026-103352. PoCs published by d7x.
AI-analyzed exploit summary This exploit leverages MySQL's User-Defined Function (UDF) feature to achieve local privilege escalation on Linux systems by injecting shellcode. It is based on the raptor_udf.c exploit and uses shellcode derived from Metasploit.
Description
MySQL User-Defined (Linux) (x86) - 'sys_exec' Local Privilege Escalation
Exploits (1)
exploitdb
WORKING POC
by d7x · pythonlocallinux_x86
https://www.exploit-db.com/exploits/46249
This exploit leverages MySQL's User-Defined Function (UDF) feature to achieve local privilege escalation on Linux systems by injecting shellcode. It is based on the raptor_udf.c exploit and uses shellcode derived from Metasploit.
Classification
Working Poc 95%
Attack Type
Lpe
Complexity
Moderate
Reliability
Reliable
Target:
MySQL 4.x/5.x
Auth required
Prerequisites:
Local access to MySQL server · Ability to create UDFs
devstral-2 · analyzed Feb 16, 2026
Full analysis →
Details
Status
pre_cve
Tracked Since
Feb 18, 2026