Описание
In Sudo through 1.9.17p2 before 3e474c2, a failure of a setuid, setgid, or setgroups call, during a privilege drop before running the mailer, is not a fatal error and can lead to privilege escalation.
| Релиз | Статус | Примечание |
|---|---|---|
| devel | released | 1.9.17p2-1ubuntu3 |
| esm-infra-legacy/trusty | not-affected | |
| esm-infra-legacy/xenial | not-affected | |
| esm-infra/bionic | not-affected | |
| esm-infra/focal | not-affected | |
| esm-infra/xenial | not-affected | |
| jammy | released | 1.9.9-1ubuntu2.6 |
| noble | released | 1.9.15p5-3ubuntu5.24.04.2 |
| questing | released | 1.9.17p2-1ubuntu1.1 |
| upstream | released | 1.9.17p2-5 |
Показывать по
Ссылки на источники
EPSS
7.4 High
CVSS3
Связанные уязвимости
In Sudo through 1.9.17p2 before 3e474c2, a failure of a setuid, setgid, or setgroups call, during a privilege drop before running the mailer, is not a fatal error and can lead to privilege escalation.
In Sudo through 1.9.17p2 before 3e474c2, a failure of a setuid, setgid, or setgroups call, during a privilege drop before running the mailer, is not a fatal error and can lead to privilege escalation.
In Sudo through 1.9.17p2 before 3e474c2, a failure of a setuid, setgid ...
EPSS
7.4 High
CVSS3