Bug #1005
[v2.2] Vulnerability in sudo < 1.8.3p2 allow local privilege escalation
| Status: | Closed | Start date: | 02/12/2012 | |
|---|---|---|---|---|
| Priority: | Urgent | Due date: | ||
| Assignee: | - | % Done: | 100% |
|
| Category: | - | |||
| Target version: | Alpine 2.2.4 |
Description
http://www.sudo.ws/sudo/alerts/sudo_debug.html
http://cve.mitre.org/cgi-bin/cvename.cgi?name=2012-0809
Please note the exploitation of the bug does not require that the attacker be listed in the sudoers file.
Exploit is public.
Solution:
- Upgrade to v1.8.3p2
Associated revisions
main/sudo: security upgrade to 1.8.3_p2 (CVE-2012-0809)
fixes #1005
History
Updated by Natanael Copa 3 months ago
- Status changed from New to Resolved
- % Done changed from 0 to 100
Applied in changeset 0fda40c88e85cf7ae9cbee333fe7eb2aed9871bc.
Updated by Natanael Copa 3 months ago
- Project changed from Alpine Security to Alpine Linux
Updated by Natanael Copa 3 months ago
- Status changed from Resolved to Closed