Format string vulnerability in OpenBSD su program (and possibly other BSD-based operating systems) allows local attackers to gain root privileges via a malformed shell.Referencesftp://ftp.openbsd.org/pub/OpenBSD/patches/2.7/common/028_format_strings.patchhttps://exchange.xforce.ibmcloud.com/vulnerabilities/5636http://www.osvdb.org/6124