Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-g5fc-f834-rcr2

Опубликовано: 03 апр. 2026
Источник: github
Github: Не прошло ревью
CVSS3: 7.4

Описание

In Sudo through 1.9.17p2 before 3e474c2, a failure of a setuid, setgid, or setgroups call, during a privilege drop before running the mailer, is not a fatal error and can lead to privilege escalation.

In Sudo through 1.9.17p2 before 3e474c2, a failure of a setuid, setgid, or setgroups call, during a privilege drop before running the mailer, is not a fatal error and can lead to privilege escalation.

Ссылки

EPSS

Процентиль: 7%
0.00173
Низкий

7.4 High

CVSS3

Дефекты

CWE-271
CWE-272

Связанные уязвимости

CVSS3: 7.4
ubuntu
4 месяца назад

In Sudo through 1.9.17p2 before 3e474c2, a failure of a setuid, setgid, or setgroups call, during a privilege drop before running the mailer, is not a fatal error and can lead to privilege escalation.

CVSS3: 7.4
redhat
4 месяца назад

In Sudo through 1.9.17p2 before 3e474c2, a failure of a setuid, setgid, or setgroups call, during a privilege drop before running the mailer, is not a fatal error and can lead to privilege escalation.

CVSS3: 7.4
nvd
4 месяца назад

In Sudo through 1.9.17p2 before 3e474c2, a failure of a setuid, setgid, or setgroups call, during a privilege drop before running the mailer, is not a fatal error and can lead to privilege escalation.

CVSS3: 7.4
msrc
4 месяца назад

Описание отсутствует

CVSS3: 7.4
debian
4 месяца назад

In Sudo through 1.9.17p2 before 3e474c2, a failure of a setuid, setgid ...

EPSS

Процентиль: 7%
0.00173
Низкий

7.4 High

CVSS3

Дефекты

CWE-271
CWE-272