CVE-2026-82474
- EPSS 0.13%
- Veröffentlicht 29.08.2026 16:35:33
- Zuletzt bearbeitet 10.09.2026 19:54:25
Sudo through 1.9.17p2 fails to apply intercept policy checks to the execveat system call in ptrace-based intercept mode. Users permitted to run specific commands can execute denied programs by calling execveat directly or through fexecve, bypassing p...
CVE-2026-35535
- EPSS 0.17%
- Veröffentlicht 03.04.2026 02:21:33
- Zuletzt bearbeitet 01.09.2026 13:19:03
In Sudo through 1.9.17p2 before 3e474c2, a failure of a setuid, setgid, or setgroups call, during a privilege drop before running the mailer, is not a fatal error and can lead to privilege escalation.
CVE-2025-32463
- EPSS 58.76%
- Veröffentlicht 30.06.2025 00:00:00
- Zuletzt bearbeitet 05.11.2025 19:26:48
Sudo before 1.9.17p1 allows local users to obtain root access because /etc/nsswitch.conf from a user-controlled directory is used with the --chroot option.
CVE-2025-32462
- EPSS 4.14%
- Veröffentlicht 30.06.2025 00:00:00
- Zuletzt bearbeitet 14.07.2026 13:17:33
Sudo before 1.9.17p1, when used with a sudoers file that specifies a host that is neither the current host nor ALL, allows listed users to execute commands on unintended machines.
CVE-2023-7090
- EPSS 0.69%
- Veröffentlicht 23.12.2023 23:15:07
- Zuletzt bearbeitet 21.11.2024 08:45:13
A flaw was found in sudo in the handling of ipa_hostname, where ipa_hostname from /etc/sssd/sssd.conf was not propagated in sudo. Therefore, it leads to privilege mismanagement vulnerability in applications, where client hosts retain privileges even ...
- EPSS 0.54%
- Veröffentlicht 22.12.2023 16:15:08
- Zuletzt bearbeitet 04.11.2025 22:15:53
Sudo before 1.9.15 might allow row hammer attacks (for authentication bypass or privilege escalation) because application logic sometimes is based on not equaling an error value (instead of equaling a success value), and because the values do not res...
CVE-2023-28487
- EPSS 0.95%
- Veröffentlicht 16.03.2023 01:15:47
- Zuletzt bearbeitet 21.11.2024 07:55:12
Sudo before 1.9.13 does not escape control characters in sudoreplay output.
CVE-2023-28486
- EPSS 0.92%
- Veröffentlicht 16.03.2023 01:15:47
- Zuletzt bearbeitet 21.11.2024 07:55:12
Sudo before 1.9.13 does not escape control characters in log messages.
CVE-2023-27320
- EPSS 1.66%
- Veröffentlicht 28.02.2023 18:15:10
- Zuletzt bearbeitet 21.03.2025 21:15:34
Sudo before 1.9.13p2 has a double free in the per-command chroot feature.
CVE-2023-22809
- EPSS 55.37%
- Veröffentlicht 18.01.2023 17:15:10
- Zuletzt bearbeitet 04.04.2025 16:15:16
In Sudo before 1.9.12p2, the sudoedit (aka -e) feature mishandles extra arguments passed in the user-provided environment variables (SUDO_EDITOR, VISUAL, and EDITOR), allowing a local attacker to append arbitrary entries to the list of files to proce...