{"id":"CVE-2026-57589","aliases":[],"url":"https://o3.security/vulnerability/CVE-2026-57589","summary":null,"details":"sys/kern/sysv_sem.c in OpenBSD through 7.9 has a use-after-free allowing local privilege escalation to root. This is a context switch use-after-free after tsleep in sys_semget().","published":"2026-06-25T00:33:04.749Z","modified":"2026-07-15T10:20:26.015843Z","cvss":{"score":7.4,"severity":"HIGH","vector":"CVSS:3.1/AV:L/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:H"},"epss":{"score":0.00169,"percentile":0.06503,"asOf":"2026-09-10"},"cisaKev":null,"exploitsKnown":0,"affectedPackages":[],"fix":{"url":"https://github.com/openbsd/src/commit/1957873d2063db11dab780eca75b5e629d1e838d","label":"openbsd/src@1957873"},"references":[{"type":"WEB","url":"https://openai.com/index/patch-the-planet/"},{"type":"ADVISORY","url":"https://github.com/CVEProject/cvelistV5/tree/main/cves/2026/57xxx/CVE-2026-57589.json"},{"type":"ADVISORY","url":"https://nvd.nist.gov/vuln/detail/CVE-2026-57589"},{"type":"FIX","url":"https://github.com/openbsd/src/commit/1957873d2063db11dab780eca75b5e629d1e838d"}],"provenance":{"sources":["OSV.dev","FIRST.org (EPSS)"],"lastVerified":"2026-07-15T10:20:26.015843Z"}}