CVE-2026-57589Patch(openbsd / openbsd)

LOWCVSS 7.8 · HIGH

Signal is active with 1 mentions in latest observed window

Immediate actions

  • Patch openbsd openbsd systems immediately

Recommended action window: Monitor and triage in normal cycle

NVD description

sys/kern/sysv_sem.c in OpenBSD through 7.9 has a use-after-free allowing local privilege escalation to root. This is a context switch use-after-free after tsleep in sys_semget().

0.5/ 10 priority

Sources & remediation

Vendor / third-party advisories
Weakness type (CWE)
CWE-416

Priority

LOW

Exploitation

NONE

PoC

NONE

Patch

AVAILABLE

Momentum

STABLE

Are you affected?

If you run products in this scope, you should treat this CVE as relevant to your environment.

  • openbsd

Threat summary

  • Patch or workaround signal is available
  • 3 mentions across 3 observed days
  • Momentum state: stable

What's happening

  • Patch or workaround mentioned in 2 signals
  • Technical details provided in 2 signals
  • General: 1 classified signal
  • Peaked 2d ago at 1 mentions (2026-07-08); latest day: 1
  • 3 total mentions across 3 days

Affected systems

Vendors
Products
openbsd

Deep dive

Activity timeline3 mentions / 3d
00111Mentions · 2026-07-08: 1Mentions · 2026-07-09: 1Mentions · 2026-07-12: 1Patch / Workaround · 2026-07-08: 1Patch / Workaround · 2026-07-09: 1Technical Details · 2026-07-08: 1Technical Details · 2026-07-09: 107-0807-0907-12
Signal classification2 categories
Patch
266.7%
General
133.3%
Referenced assets2 URLs
Classification over time
DateTotalLabels
2026-07-081
Patch1
2026-07-091
Patch1
2026-07-121
General1
Full discourse3 posts
  • jbz@jbzfn
    General

    https://nvd.nist.gov/vuln/detail/cve-2026-57589 #openbsd #bsd #cve #cve202657589 #cybersecurity

    Post summary

    The post simply links to the NVD entry for CVE‑2026‑57589 and lists relevant hashtags, providing no substantive technical or operational information.

    0000059
    40 followersView on X
  • Axiopistis Holdings LC@axiopistis
    Patch

    OpenBSD fix incoming: a use-after-free flaw enables local privilege escalation to root. Patch fast, system hardening matters. Details: CVE-2026-57589. #Security #OpenBSD #CVE #PrivEsc #Infosec

    Post summary

    OpenBSD CVE‑2026‑57589 is a use‑after‑free flaw allowing local privilege escalation to root, and a patch has already been released.

    0000067
    44 followersView on X
  • foursignals@foursignalsdev
    Patch

    OpenBSD 7.9 use-after-free flaw lets local users escalate to root (CVE-2026-57589). Patch now. https://www.foursignals.dev/wire/2026-07-08/openbsd-through-7-9-has-a-use-after-free-allowing-local-7f4c5f

    Post summary

    OpenBSD 7.9 is affected by a use-after-free bug that lets local users gain root access; a patch has been released.

    0000060
    26 followersView on X
CPE platform detail1 entries

1 of 1 entries

PartVendorProductVersionTarget SWTarget HW
OSopenbsdopenbsd---

Explore more