4.4
CVE-2010-0427
- EPSS 0.08%
- Veröffentlicht 25.02.2010 19:30:00
- Zuletzt bearbeitet 11.04.2025 00:51:21
- Quelle secalert@redhat.com
- CVE-Watchlists
- Unerledigt
sudo 1.6.x before 1.6.9p21, when the runas_default option is used, does not properly set group memberships, which allows local users to gain privileges via a sudo command.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
Todd Miller ≫ Sudo Version1.6
Todd Miller ≫ Sudo Version1.6.1
Todd Miller ≫ Sudo Version1.6.2
Todd Miller ≫ Sudo Version1.6.3
Todd Miller ≫ Sudo Version1.6.3_p1
Todd Miller ≫ Sudo Version1.6.3_p2
Todd Miller ≫ Sudo Version1.6.3_p3
Todd Miller ≫ Sudo Version1.6.3_p4
Todd Miller ≫ Sudo Version1.6.3_p5
Todd Miller ≫ Sudo Version1.6.3_p6
Todd Miller ≫ Sudo Version1.6.3_p7
Todd Miller ≫ Sudo Version1.6.4_p1
Todd Miller ≫ Sudo Version1.6.4_p2
Todd Miller ≫ Sudo Version1.6.5
Todd Miller ≫ Sudo Version1.6.5_p1
Todd Miller ≫ Sudo Version1.6.5_p2
Todd Miller ≫ Sudo Version1.6.6
Todd Miller ≫ Sudo Version1.6.7
Todd Miller ≫ Sudo Version1.6.7_p5
Todd Miller ≫ Sudo Version1.6.8
Todd Miller ≫ Sudo Version1.6.8_p1
Todd Miller ≫ Sudo Version1.6.8_p5
Todd Miller ≫ Sudo Version1.6.8_p8
Todd Miller ≫ Sudo Version1.6.8_p9
Todd Miller ≫ Sudo Version1.6.8_p12
Todd Miller ≫ Sudo Version1.6.9_p17
Todd Miller ≫ Sudo Version1.6.9_p18
Todd Miller ≫ Sudo Version1.6.9_p19
| Typ | Quelle | Score | Percentile |
|---|---|---|---|
| EPSS | FIRST.org | 0.08% | 0.202 |
| Quelle | Base Score | Exploit Score | Impact Score | Vector String |
|---|---|---|---|---|
| nvd@nist.gov | 4.4 | 3.4 | 6.4 |
AV:L/AC:M/Au:N/C:P/I:P/A:P
|