Description
Format string vulnerability in OpenBSD fstat program (and possibly other BSD-based operating systems) allows local users to gain root privileges via the PWD environmental variable.
Exploits (1)
References (4)
Scores
EPSS
0.0042
EPSS Percentile
61.7%
Details
Status
published
Products (5)
openbsd/openbsd
2.3
openbsd/openbsd
2.4
openbsd/openbsd
2.5
openbsd/openbsd
2.6
openbsd/openbsd
2.7
Published
Dec 19, 2000
Tracked Since
Feb 18, 2026