CVE-2026-82457
Severity CVSS v4.0:
HIGH
Type:
Unavailable / Other
Publication date:
29/08/2026
Last modified:
23/09/2026
Description
su-exec through 0.3 fails to validate numeric user and group identifiers parsed with strtol before assigning to uid_t and gid_t, allowing truncation of out-of-range values to zero. Attackers can supply large numeric identifiers that truncate to root's identifier, causing su-exec to execute target programs with root privileges instead of intended unprivileged accounts.
Impact
Base Score 4.0
8.50
Severity 4.0
HIGH
Base Score 3.x
7.80
Severity 3.x
HIGH
References to Advisories, Solutions, and Tools
- https://gist.github.com/thesmartshadow/ed96e2a88643c34a247c9b7cf9e311be
- https://github.com/ncopa/su-exec
- https://github.com/ncopa/su-exec/blob/89c016e6e08749d583efdeda04b9f73e1218e253/su-exec.c
- https://www.vulncheck.com/advisories/su-exec-through-0.3-privilege-escalation-via-numeric-user-id
- https://gist.github.com/thesmartshadow/ed96e2a88643c34a247c9b7cf9e311be


