PT-2026-52158 · Openbsd · Openbsd
CVE-2026-57589
·
Published
2026-06-25
·
Updated
2026-07-10
CVSS v3.1
7.8
High
| Vector | AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H |
Name of the Vulnerable Software and Affected Versions
OpenBSD versions prior to 7.10
Description
A use-after-free issue exists in the
sys/kern/sysv sem.c file. This occurs during a context switch following the tsleep() function within sys semget(), which can be exploited to allow local privilege escalation to root.Recommendations
Update OpenBSD to version 7.10 or later.
Exploit
Fix
LPE
Use After Free
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Openbsd