HP-UX swask format string local root exploit. HP-UX swask contains an exploitable format string vulnerability. The swask utility is installed setuid root by default. Specifically the vulnerability is in the handling of the "-s" optional argument which is passed to a format function as verbatim.