EIP-2026-117270

PRE-CVE

HexChat 2.9.4 - Local Overflow

Title source: legacy
STIX 2.1

Exploitation Summary

EIP tracks 1 public exploit for EIP-2026-117270. PoCs published by Matt Andreko.

AI-analyzed exploit summary This exploit targets a buffer overflow vulnerability in HexChat 2.9.4 by injecting a crafted payload into the server input field, leading to arbitrary code execution via shellcode.

Description

HexChat 2.9.4 - Local Overflow

Exploits (1)

exploitdb WORKING POC VERIFIED
by Matt Andreko · pythonlocalwindows
https://www.exploit-db.com/exploits/24919

This exploit targets a buffer overflow vulnerability in HexChat 2.9.4 by injecting a crafted payload into the server input field, leading to arbitrary code execution via shellcode.

Classification
Working Poc 95%
Attack Type
Rce
Complexity
Moderate
Reliability
Reliable
Target: HexChat 2.9.4
No auth needed
Prerequisites: Local access to HexChat 2.9.4 · Ability to input data into the server field
devstral-2 · analyzed Feb 16, 2026 Full analysis →

Details

Status pre_cve
Tracked Since Feb 18, 2026