Nagios 4.3.2 and earlier allows local users to gain root privileges via a hard link attack on the Nagios init script file, related to CVE-2016-8641.
"https://storage.googleapis.com/osv-test-cve-osv-conversion/osv-output/CVE-2016-10089.json"