Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

redhat логотип

CVE-2026-82474

Опубликовано: 29 авг. 2026
Источник: redhat
CVSS3: 7.8

Описание

Sudo through 1.9.17p2 fails to apply intercept policy checks to the execveat system call in ptrace-based intercept mode. Users permitted to run specific commands can execute denied programs by calling execveat directly or through fexecve, bypassing policy enforcement and logging.

A flaw was found in Sudo. This vulnerability allows users who are permitted to run specific commands to bypass security policy checks when using the execveat system call in ptrace-based intercept mode. By directly calling execveat or fexecve, an attacker can execute programs that would otherwise be denied, thereby circumventing policy enforcement and logging mechanisms.

Отчет

This vulnerability in Sudo allows a local attacker, already authorized to run specific commands, to bypass configured policy restrictions. By directly invoking execveat or fexecve when Sudo is operating in ptrace-based intercept mode, an attacker can execute programs otherwise denied by sudo policies. This undermines granular access control and could lead to unauthorized command execution on affected Red Hat systems.

Меры по смягчению последствий

To mitigate this issue, disable the ptrace-based intercept mode in the sudoers configuration. Add Defaults !intercept to /etc/sudoers or a file within /etc/sudoers.d/. This action may affect advanced sudo policy enforcement or logging features that rely on ptrace-based interception. Always validate sudoers file changes with visudo to prevent system lockout.

Затронутые пакеты

ПлатформаПакетСостояниеРекомендацияРелиз
Red Hat Enterprise Linux 10sudoAffected
Red Hat Enterprise Linux 6sudoAffected
Red Hat Enterprise Linux 7sudoAffected
Red Hat Enterprise Linux 8sudoAffected
Red Hat Enterprise Linux 9sudoAffected
Red Hat Hardened Imagessudo-main-1.9.17-16.p2.1.hum1FixedRHSA-2026:6556908.09.2026

Показывать по

Дополнительная информация

Статус:

Important
Дефект:
CWE-1220
https://bugzilla.redhat.com/show_bug.cgi?id=2525889sudo: Sudo: Policy bypass allows unauthorized program execution via execveat

7.8 High

CVSS3

Связанные уязвимости

CVSS3: 7.8
ubuntu
18 дней назад

Sudo through 1.9.17p2 fails to apply intercept policy checks to the execveat system call in ptrace-based intercept mode. Users permitted to run specific commands can execute denied programs by calling execveat directly or through fexecve, bypassing policy enforcement and logging.

CVSS3: 7.8
nvd
18 дней назад

Sudo through 1.9.17p2 fails to apply intercept policy checks to the execveat system call in ptrace-based intercept mode. Users permitted to run specific commands can execute denied programs by calling execveat directly or through fexecve, bypassing policy enforcement and logging.

msrc
16 дней назад

Sudo through 1.9.17p2 Intercept Policy Bypass via execveat

CVSS3: 7.8
debian
18 дней назад

Sudo through 1.9.17p2 fails to apply intercept policy checks to the ex ...

CVSS3: 7.8
github
18 дней назад

Sudo through 1.9.17p2 fails to apply intercept policy checks to the execveat system call in ptrace-based intercept mode. Users permitted to run specific commands can execute denied programs by calling execveat directly or through fexecve, bypassing policy enforcement and logging.

7.8 High

CVSS3