Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

msrc логотип

CVE-2026-82474

Опубликовано: 31 авг. 2026
Источник: msrc
CVSS3: 7.8
EPSS Низкий

Описание

Sudo through 1.9.17p2 Intercept Policy Bypass via execveat

Обновления

ПродуктСтатьяОбновление
azl3 sudo 1.9.17-2 on Azure Linux 3.0

Показывать по

EPSS

Процентиль: 3%
0.00131
Низкий

7.8 High

CVSS3

Связанные уязвимости

CVSS3: 7.8
ubuntu
18 дней назад

Sudo through 1.9.17p2 fails to apply intercept policy checks to the execveat system call in ptrace-based intercept mode. Users permitted to run specific commands can execute denied programs by calling execveat directly or through fexecve, bypassing policy enforcement and logging.

CVSS3: 7.8
redhat
18 дней назад

A flaw was found in Sudo. This vulnerability allows users who are permitted to run specific commands to bypass security policy checks when using the `execveat` system call in ptrace-based intercept mode. By directly calling `execveat` or `fexecve`, an attacker can execute programs that would otherwise be denied, thereby circumventing policy enforcement and logging mechanisms.

CVSS3: 7.8
nvd
18 дней назад

Sudo through 1.9.17p2 fails to apply intercept policy checks to the execveat system call in ptrace-based intercept mode. Users permitted to run specific commands can execute denied programs by calling execveat directly or through fexecve, bypassing policy enforcement and logging.

CVSS3: 7.8
debian
18 дней назад

Sudo through 1.9.17p2 fails to apply intercept policy checks to the ex ...

CVSS3: 7.8
github
18 дней назад

Sudo through 1.9.17p2 fails to apply intercept policy checks to the execveat system call in ptrace-based intercept mode. Users permitted to run specific commands can execute denied programs by calling execveat directly or through fexecve, bypassing policy enforcement and logging.

EPSS

Процентиль: 3%
0.00131
Низкий

7.8 High

CVSS3