CVE-2026-57589: Use After Free
Published Jun 25, 2026
·Updated
sys/kern/sysvsem.c in OpenBSD through 7.9 has a use-after-free allowing local privilege escalation to root. This is a context switch use-after-free after tsleep in syssemget().
Affected Software
2 affected components
OpenBSD OpenBSD<=7.9
OpenBSD OpenBSD<=7.9
Remediation
Event History
Jun 25, 2026
CVE Published
via MITRE·12:33 AM
Data Sourced
via MITRE·12:33 AM
DescriptionSeverityWeakness
Data Sourced
via NVD·01:16 AM
RemedyDescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2026-57589?
CVE-2026-57589 has a severity score of 7.4, indicating it is classified as high risk.
2
What types of vulnerabilities are associated with CVE-2026-57589?
CVE-2026-57589 is associated with a use-after-free vulnerability which can lead to local privilege escalation.
3
How do I fix CVE-2026-57589?
To fix CVE-2026-57589, update to the latest version of OpenBSD that includes the security patch addressing this vulnerability.
4
What systems are affected by CVE-2026-57589?
CVE-2026-57589 affects OpenBSD through version 7.9.
5
What is the impact of CVE-2026-57589?
CVE-2026-57589 allows local privilege escalation to root, compromising system security.