CVE detail
CVE-2025-32462
Sudo before 1.9.17p1, when used with a sudoers file that specifies a host that is neither the current host nor ALL, allows listed users to execute commands on unintended machines.
Buzz score
Why this CVE is surfacing
This all-time snapshot uses the same composite formula as Trending across a 30-year evidence window, rather than a current rolling window.
Buzz score components · mention 30.0 · diversity 20.0 · KEV 0.0 · OTX 0.0 · PoC 0.0
Why it matters now
Mention timeline
- Total mentions
- 1
- within the 30d window
- Peak daily
- 1
- highest bucket
Evidence
Source links by recency
22 source links · newest first
- Siemens SIDIS Secured SmartPlugCISA Alerts
l Manufacturing Countries/Areas Deployed: Worldwide Company Headquarters Location: Germany Vulnerabilities Expand All + CVE-2022-23303 The implementations of SAE in hostapd before 2.10 and wpa_supplicant before 2.10 are vulnerable to side channel attacks as a result of cache access patterns. NOTE: this issue exists because of an incomplete fix for CVE-
governmentwww.cisa.govJul 21, 2026, 12:00 PM - U.S. CISA adds Adminer, Cisco IOS, Fortra GoAnywhere MFT, Libraesva ESG, and Sudo flaws to its Known Exploited Vulnerabilities catalogSecurity Affairs
U.S. Cybersecurity and Infrastructure Security Agency (CISA) adds Adminer, Cisco IOS, Fortra GoAnywhere MFT, Libraesva ESG, and Sudo flaws to its Known Exploited Vulnerabilities catalog. The U.S. Cybersecurity and Infrastructure Security Agency (CISA) added Adminer, Cisco IOS, Fortra GoAnywhere MFT, Libraesva ESG, and Sudo flaws to its Known Exploited Vulnerabilities (KEV) catalog. Below are the descriptions […]
newssecurityaffairs.comSep 30, 2025, 9:07 AM Two new vulnerabilities have been found in Sudo, a privileged command-line tool installed on Linux systems, that can allow privilege escalation and unintended command execution on affected Ubuntu and Debian systems. According to a Stratascale research, the command-line tool has two local privilege escalation vulnerabilities, affecting the Sudo “host” and Sudo “Chroot” features. One of […]
newswww.csoonline.comJul 8, 2025, 12:14 PM- Week in review: Sudo local privilege escalation flaws fixed, Google patches actively exploited ChromeHelp Net Security
Here’s an overview of some of last week’s most interesting news, articles, interviews and videos: Sudo local privilege escalation vulnerabilities fixed (CVE-2025-32462, CVE-2025-32463) If you haven’t recently updated the Sudo utility on your Linux box(es), you should do so now, to patch two local privilege escalation vulnerabilities (CVE-2025-32462, CVE-2025-32463) that have been disclosed on Monday. Google patches actively exploited Chrome (CVE‑2025‑6554) Google has released a security update for Chrome to address a zero‑day vulnerability (CVE-2025-6554) … More →
newswww.helpnetsecurity.comJul 6, 2025, 8:00 AM Critical Sudo flaws let local users gain root access on Linux systems, the vulnerabilities affect major Linux distributions. Cybersecurity researchers disclosed two vulnerabilities in the Sudo command-line utility for Linux and Unix-like operating systems. Local attackers can exploit the vulnerabilities to escalate privileges to root on affected systems. Sudo (short for “superuser do”) is a […]
newssecurityaffairs.comJul 4, 2025, 8:04 PM- In Other News: Hacker Helps Kill Informants, Crylock Developer Sentenced, Ransomware Negotiator ProbedSecurityWeek
Noteworthy stories that might have slipped under the radar: drug cartel hires hacker to identify FBI informants, prison time for Russian ransomware developer, ransomware negotiator investigated.
newswww.securityweek.comJul 4, 2025, 10:30 AM - Sudo local privilege escalation vulnerabilities fixed (CVE-2025-32462, CVE-2025-32463)Help Net Security
If you haven’t recently updated the Sudo utility on your Linux box(es), you should do so now, to patch two local privilege escalation vulnerabilities (CVE-2025-32462, CVE-2025-32463) that have been disclosed on Monday. What is Sudo? Sudo is command-line utility in Unix-like operating systems that allows a low-privilege user to execute a command as another user, typically the root/administrator user. The utility effectively grants temporary elevated privileges without requiring the user to log in as root. … More →
newswww.helpnetsecurity.comJul 1, 2025, 12:58 PM - https://cert-portal.siemens.com/productcert/html/ssa-585531.htmlcert-portal.siemens.com
No excerpt available.
Vendor Advisorycert-portal.siemens.comJun 30, 2025, 9:15 PM No excerpt available.
Vendor Advisorylists.debian.orgJun 30, 2025, 9:15 PMNo excerpt available.
referencewww.suse.comJun 30, 2025, 9:15 PMNo excerpt available.
Vendor Advisorywww.sudo.wsJun 30, 2025, 9:15 PM- https://www.sudo.ws/security/advisories/www.sudo.ws
No excerpt available.
Vendor Advisorywww.sudo.wsJun 30, 2025, 9:15 PM - https://www.sudo.ws/releases/changelog/www.sudo.ws
No excerpt available.
Vendor Advisorywww.sudo.wsJun 30, 2025, 9:15 PM - https://www.stratascale.com/vulnerability-alert-CVE-2025-32462-sudo-hostwww.stratascale.com
No excerpt available.
Exploitwww.stratascale.comJun 30, 2025, 9:15 PM - https://www.secpod.com/blog/sudo-lpe-vulnerabilities-resolved-what-you-need-to-know-about-cve-2025-32462-and-cve-2025-32463/www.secpod.com
No excerpt available.
Third Party Advisorywww.secpod.comJun 30, 2025, 9:15 PM - https://www.openwall.com/lists/oss-security/2025/06/30/2www.openwall.com
No excerpt available.
Exploitwww.openwall.comJun 30, 2025, 9:15 PM No excerpt available.
Third Party Advisoryubuntu.comJun 30, 2025, 9:15 PM- https://security-tracker.debian.org/tracker/CVE-2025-32462security-tracker.debian.org
No excerpt available.
Third Party Advisorysecurity-tracker.debian.orgJun 30, 2025, 9:15 PM No excerpt available.
Vendor Advisorylists.debian.orgJun 30, 2025, 9:15 PM- https://explore.alas.aws.amazon.com/CVE-2025-32462.htmlexplore.alas.aws.amazon.com
No excerpt available.
referenceexplore.alas.aws.amazon.comJun 30, 2025, 9:15 PM - https://bugs.gentoo.org/show_bug.cgi?id=CVE-2025-32462bugs.gentoo.org
No excerpt available.
Third Party Advisorybugs.gentoo.orgJun 30, 2025, 9:15 PM - https://access.redhat.com/security/cve/cve-2025-32462access.redhat.com
No excerpt available.
Vendor Advisoryaccess.redhat.comJun 30, 2025, 9:15 PM
Exploit code
Public exploit repository references
Public PoC repositories are third-party, potentially unsafe artifacts. Treat their code as untrusted and use it only on authorized systems in an isolated, least-privilege environment. cvebuzz does not execute the code or verify that an exploit works.
0 repository references · best confidence N/A · max 0 stars
Related records
Similar CVEs
6 related CVEs with shared weakness or product evidence
- CVE-2026-48449CVSS 10.0 · Critical
Adobe Campaign Classic (ACC) is affected by an Incorrect Authorization vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation…
- CVE-2026-67439CVSS 4.3 · Medium
OliveTin gives safe and simple access to predefined shell commands from a web interface. Prior to 3000.17.0, the service/internal/api/api.go StartActionAndWait and StartActionByGe…
- CVE-2026-65975CVSS 6.5 · Medium
Pydantic AI is a Python agent framework for building applications and workflows with Generative AI. In versions 1.88.0 up to but not including 1.107.1 and 2.0.0b1 up to but not in…
- CVE-2026-6336CVSS 5.3 · Medium
GitLab has remediated an issue in GitLab CE/EE affecting all versions from 16.6 before 19.0.5, 19.1 before 19.1.3, and 19.2 before 19.2.1 that under certain conditions could have…
- CVE-2025-14562CVSS 3.1 · Low
GitLab has remediated an issue in GitLab CE/EE affecting all versions from 10.6 before 19.0.5, 19.1 before 19.1.3, and 19.2 before 19.2.1 that under certain conditions could have…
- CVE-2026-18236CVSS 9.3 · Critical
A vulnerability in the Agent Development Kit (ADK) allows for continuation forgery in tool confirmations. An attacker who is able to manipulate or inject events into the session h…