Format string vulnerability in scsiopen.c of the cdrecord program in cdrtools 2.0 allows local users to gain privileges via format string specifiers in the dev parameter.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.011
EPSS Ranking 60.1%