When you control environment variables, can't you also LDPRELOAD scary stuff?
We were also unable to control the contents of a file on disk, and bruteforcing process identifiers (PIDs) and file descriptors found no interesting results, eliminating remote LD_PRELOAD exploitation.> We were also unable to control the contents of a file on disk
From the first and second sentence.
One wouldn't usually file a CVE in these circumstances, if only the client is affected.