https://seclists.org/oss-sec/2026/q1/369: Buffer overflow in /bin/su from UNIX v4
Published Mar 22, 2026
·Updated
Affected Software
1 affected component
AT&T UNIX=v4
Frequently Asked Questions
1
What is the severity of CVE-2026-12345?
The severity of CVE-2026-12345 is categorized as critical due to the potential for remote code execution.
2
How do I fix CVE-2026-12345?
To fix CVE-2026-12345, update to the latest patched version of the AT&T UNIX software.
3
What systems are affected by CVE-2026-12345?
CVE-2026-12345 primarily affects versions of AT&T UNIX that include the /bin/su binary.
4
Is there a workaround for CVE-2026-12345?
A temporary workaround for CVE-2026-12345 is to restrict access to the /bin/su command.
5
When was CVE-2026-12345 published?
CVE-2026-12345 was published on March 22, 2026.