Towards Label-Only Membership Inference Attack against Pre-trained Large Language Models