← Back to feed
Vulnerabilities & PatchesEmerging1 sourceAug 29, 2026 · 14:16via CVEFeed

CVE-2026-82457 - su-exec through 0.3 Privilege Escalation via Numeric User ID

Brief

CVE ID : CVE-2026-82457

Published : Aug. 29, 2026, 2:16 p. m.

  • 6 hours, 58 minutes ago

Description : su-exec through 0. 3 fails to validate numeric user and group identifiers parsed with strtol before assigning to uid_t and gid_t, allowing truncation of out-of-range values to zero. Attackers can supply large numeric identifiers that truncate to root's identifier, causing su-exec to execute target programs with root privileges instead of intended unprivileged accounts.

Severity: 7.8

  • HIGH

Visit the link for more details, such as CVSS details, affected products, timeline, and more...

Read more on CVEFeed