Elektrine lite

← Feed

@thibaultmol@en.osm.town

Post #1799412

2026-04-29 19:53 UTC

@darkrat@chaosfurs.social It's weird how the code they want you to curl and run is minified and has a binary section in it.... just weird.... edit: tbc, my friend said this, I hadn't checked it yet. He said that this is not normally how proof of concepts are written I really hope someone on fedi who knows this stuff can verify this cause I'm not boosting it without seeing that

Replies (2)

  • @thibaultmol @darkrat Tested on my Arch which was updated last week... it worked. After an update (with latest kernel) it does not work anymore. The POC is safe : it "just" gives you a root shell, but it won't break anything. Anyway, just update your kernel, for example this is the Debian page on this CVE : https://security-tracker.debian.org/tracker/CVE-2026-31431 Also the kernel patch : https://git.kernel.org/pub/scm/linux/kernel/git/torvalds/linux.git/commit/?id=a664bf3d603dc3bdcf9ae47cc21e0daec706d7a5

    Open ##1801927

  • @jackemled@furry.engineer 2026-04-30 04:28

    @thibaultmol @darkrat The whole xint.io article is AI generated & an advertisement for their chatbot, so of course the proof of concept is bad. Apparently the issue is actually real. I would not be surprised if it was found by real people & then they ran it through chatgpt to pretend that it found the bug.

    Open ##1801931