CVE-2019-19726 | OpenBSD up to 6.6 setuid Program ld.so _dl_setup_env LD_LIBRARY_PATH privileges management (ID 155658 / EDB-47780)
A vulnerability, which was classified as critical, has been found in OpenBSD up to 6.6. This issue affects the function _dl_setup_env of the file ld.so of the component setuid Program Handler. The manipulation of the argument LD_LIBRARY_PATH leads to improper privilege management.
The identification of this vulnerability is CVE-2019-19726. The attack needs to be approached locally. Furthermore, there is an exploit available.