4.4
CVE-2010-0427
- EPSS 0.08%
- Veröffentlicht 25.02.2010 19:30:00
- Zuletzt bearbeitet 11.04.2025 00:51:21
- Quelle secalert@redhat.com
- Teams Watchlist Login
- Unerledigt Login
sudo 1.6.x before 1.6.9p21, when the runas_default option is used, does not properly set group memberships, which allows local users to gain privileges via a sudo command.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
Todd Miller ≫ Sudo Version1.6
Todd Miller ≫ Sudo Version1.6.1
Todd Miller ≫ Sudo Version1.6.2
Todd Miller ≫ Sudo Version1.6.3
Todd Miller ≫ Sudo Version1.6.3_p1
Todd Miller ≫ Sudo Version1.6.3_p2
Todd Miller ≫ Sudo Version1.6.3_p3
Todd Miller ≫ Sudo Version1.6.3_p4
Todd Miller ≫ Sudo Version1.6.3_p5
Todd Miller ≫ Sudo Version1.6.3_p6
Todd Miller ≫ Sudo Version1.6.3_p7
Todd Miller ≫ Sudo Version1.6.4_p1
Todd Miller ≫ Sudo Version1.6.4_p2
Todd Miller ≫ Sudo Version1.6.5
Todd Miller ≫ Sudo Version1.6.5_p1
Todd Miller ≫ Sudo Version1.6.5_p2
Todd Miller ≫ Sudo Version1.6.6
Todd Miller ≫ Sudo Version1.6.7
Todd Miller ≫ Sudo Version1.6.7_p5
Todd Miller ≫ Sudo Version1.6.8
Todd Miller ≫ Sudo Version1.6.8_p1
Todd Miller ≫ Sudo Version1.6.8_p5
Todd Miller ≫ Sudo Version1.6.8_p8
Todd Miller ≫ Sudo Version1.6.8_p9
Todd Miller ≫ Sudo Version1.6.8_p12
Todd Miller ≫ Sudo Version1.6.9_p17
Todd Miller ≫ Sudo Version1.6.9_p18
Todd Miller ≫ Sudo Version1.6.9_p19
Zu dieser CVE wurde keine CISA KEV oder CERT.AT-Warnung gefunden.
Typ | Quelle | Score | Percentile |
---|---|---|---|
EPSS | FIRST.org | 0.08% | 0.202 |
Quelle | Base Score | Exploit Score | Impact Score | Vector String |
---|---|---|---|---|
nvd@nist.gov | 4.4 | 3.4 | 6.4 |
AV:L/AC:M/Au:N/C:P/I:P/A:P
|