Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

oracle-oval логотип

ELSA-2021-9169

Опубликовано: 15 апр. 2021
Источник: oracle-oval
Платформа: Oracle Linux 6

Описание

ELSA-2021-9169: sudo security update (IMPORTANT)

[1.8.6p3-29.0.3.el6_10.3]

  • Fix a bug on CVE-2021-3156.patch backported from ol7 [Orabug: 32717065]

Обновленные пакеты

Oracle Linux 6

Oracle Linux x86_64

sudo

1.8.6p3-29.0.3.el6_10.3

sudo-devel

1.8.6p3-29.0.3.el6_10.3

Oracle Linux i686

sudo

1.8.6p3-29.0.3.el6_10.3

sudo-devel

1.8.6p3-29.0.3.el6_10.3

Связанные CVE

Связанные уязвимости

CVSS3: 7.8
ubuntu
около 5 лет назад

Sudo before 1.9.5p2 contains an off-by-one error that can result in a heap-based buffer overflow, which allows privilege escalation to root via "sudoedit -s" and a command-line argument that ends with a single backslash character.

CVSS3: 7.8
redhat
около 5 лет назад

Sudo before 1.9.5p2 contains an off-by-one error that can result in a heap-based buffer overflow, which allows privilege escalation to root via "sudoedit -s" and a command-line argument that ends with a single backslash character.

CVSS3: 7.8
nvd
около 5 лет назад

Sudo before 1.9.5p2 contains an off-by-one error that can result in a heap-based buffer overflow, which allows privilege escalation to root via "sudoedit -s" and a command-line argument that ends with a single backslash character.

CVSS3: 7.8
debian
около 5 лет назад

Sudo before 1.9.5p2 contains an off-by-one error that can result in a ...

suse-cvrf
почти 5 лет назад

Security update for sudo