Bug #1005

[v2.2] Vulnerability in sudo < 1.8.3p2 allow local privilege escalation

Added by Leonardo Arena 3 months ago. Updated 3 months ago.

Status:Closed Start date:02/12/2012
Priority:Urgent Due date:
Assignee:- % Done:

100%

Category:-
Target version:Alpine 2.2.4

Description

http://www.sudo.ws/sudo/alerts/sudo_debug.html
http://cve.mitre.org/cgi-bin/cvename.cgi?name=2012-0809

Please note the exploitation of the bug does not require that the attacker be listed in the sudoers file.
Exploit is public.

Solution:

- Upgrade to v1.8.3p2

Associated revisions

Revision 0fda40c8
Added by Natanael Copa 3 months ago

main/sudo: security upgrade to 1.8.3_p2 (CVE-2012-0809)

fixes #1005

History

Updated by Natanael Copa 3 months ago

  • Status changed from New to Resolved
  • % Done changed from 0 to 100

Updated by Natanael Copa 3 months ago

  • Project changed from Alpine Security to Alpine Linux

Updated by Natanael Copa 3 months ago

  • Status changed from Resolved to Closed

Also available in: Atom PDF