Описание
Sudo through 1.9.17p2 fails to apply intercept policy checks to the execveat system call in ptrace-based intercept mode. Users permitted to run specific commands can execute denied programs by calling execveat directly or through fexecve, bypassing policy enforcement and logging.
A flaw was found in Sudo. This vulnerability allows users who are permitted to run specific commands to bypass security policy checks when using the execveat system call in ptrace-based intercept mode. By directly calling execveat or fexecve, an attacker can execute programs that would otherwise be denied, thereby circumventing policy enforcement and logging mechanisms.
Отчет
This vulnerability in Sudo allows a local attacker, already authorized to run specific commands, to bypass configured policy restrictions. By directly invoking execveat or fexecve when Sudo is operating in ptrace-based intercept mode, an attacker can execute programs otherwise denied by sudo policies. This undermines granular access control and could lead to unauthorized command execution on affected Red Hat systems.
Меры по смягчению последствий
To mitigate this issue, disable the ptrace-based intercept mode in the sudoers configuration. Add Defaults !intercept to /etc/sudoers or a file within /etc/sudoers.d/. This action may affect advanced sudo policy enforcement or logging features that rely on ptrace-based interception. Always validate sudoers file changes with visudo to prevent system lockout.
Затронутые пакеты
| Платформа | Пакет | Состояние | Рекомендация | Релиз |
|---|---|---|---|---|
| Red Hat Enterprise Linux 10 | sudo | Affected | ||
| Red Hat Enterprise Linux 6 | sudo | Affected | ||
| Red Hat Enterprise Linux 7 | sudo | Affected | ||
| Red Hat Enterprise Linux 8 | sudo | Affected | ||
| Red Hat Enterprise Linux 9 | sudo | Affected | ||
| Red Hat Hardened Images | sudo-main-1.9.17-16.p2.1.hum1 | Fixed | RHSA-2026:65569 | 08.09.2026 |
Показывать по
Ссылки на источники
Дополнительная информация
Статус:
7.8 High
CVSS3
Связанные уязвимости
Sudo through 1.9.17p2 fails to apply intercept policy checks to the execveat system call in ptrace-based intercept mode. Users permitted to run specific commands can execute denied programs by calling execveat directly or through fexecve, bypassing policy enforcement and logging.
Sudo through 1.9.17p2 fails to apply intercept policy checks to the execveat system call in ptrace-based intercept mode. Users permitted to run specific commands can execute denied programs by calling execveat directly or through fexecve, bypassing policy enforcement and logging.
Sudo through 1.9.17p2 fails to apply intercept policy checks to the ex ...
Sudo through 1.9.17p2 fails to apply intercept policy checks to the execveat system call in ptrace-based intercept mode. Users permitted to run specific commands can execute denied programs by calling execveat directly or through fexecve, bypassing policy enforcement and logging.
7.8 High
CVSS3