Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-36m7-65w5-jm6c

Опубликовано: 29 авг. 2026
Источник: github
Github: Не прошло ревью
CVSS4: 8.5
CVSS3: 7.8

Описание

Sudo through 1.9.17p2 fails to apply intercept policy checks to the execveat system call in ptrace-based intercept mode. Users permitted to run specific commands can execute denied programs by calling execveat directly or through fexecve, bypassing policy enforcement and logging.

Sudo through 1.9.17p2 fails to apply intercept policy checks to the execveat system call in ptrace-based intercept mode. Users permitted to run specific commands can execute denied programs by calling execveat directly or through fexecve, bypassing policy enforcement and logging.

EPSS

Процентиль: 3%
0.00131
Низкий

8.5 High

CVSS4

7.8 High

CVSS3

Дефекты

CWE-693

Связанные уязвимости

CVSS3: 7.8
ubuntu
18 дней назад

Sudo through 1.9.17p2 fails to apply intercept policy checks to the execveat system call in ptrace-based intercept mode. Users permitted to run specific commands can execute denied programs by calling execveat directly or through fexecve, bypassing policy enforcement and logging.

CVSS3: 7.8
redhat
18 дней назад

Sudo through 1.9.17p2 fails to apply intercept policy checks to the execveat system call in ptrace-based intercept mode. Users permitted to run specific commands can execute denied programs by calling execveat directly or through fexecve, bypassing policy enforcement and logging.

CVSS3: 7.8
nvd
18 дней назад

Sudo through 1.9.17p2 fails to apply intercept policy checks to the execveat system call in ptrace-based intercept mode. Users permitted to run specific commands can execute denied programs by calling execveat directly or through fexecve, bypassing policy enforcement and logging.

msrc
16 дней назад

Sudo through 1.9.17p2 Intercept Policy Bypass via execveat

CVSS3: 7.8
debian
18 дней назад

Sudo through 1.9.17p2 fails to apply intercept policy checks to the ex ...

EPSS

Процентиль: 3%
0.00131
Низкий

8.5 High

CVSS4

7.8 High

CVSS3

Дефекты

CWE-693