Skip to main content

Vendor/product archive

sudo_project / sudo CVEs

Beta · best-effort

24 CVEs tagged to sudo_project / sudo1 Critical, 15 High, 5 Medium, 3 Low, 0 Unrated.

CVE-2025-32463

Published Jun 30, 2025

Sudo before 1.9.17p1 allows local users to obtain root access because /etc/nsswitch.conf from a user-controlled directory is used with the --chroot option.

CVSS 9.3 · Critical
evidence mentions
8
Buzz score
78.5
KEV listedPublic PoC observed

CVE-2025-32462

Published Jun 30, 2025

Sudo before 1.9.17p1, when used with a sudoers file that specifies a host that is neither the current host nor ALL, allows listed users to execute commands on unintended machines.

CVSS 2.8 · Low
evidence mentions
22
Buzz score
50.0
Vendor/product tagsBeta · best-effort

CVE-2023-7090

Published Dec 23, 2023

A flaw was found in sudo in the handling of ipa_hostname, where ipa_hostname from /etc/sssd/sssd.conf was not propagated in sudo. Therefore, it leads to privilege mismanagement vu…

CVSS 6.6 · Medium
Vendor/product tagsBeta · best-effort

CVE-2023-42465

Published Dec 22, 2023

Sudo before 1.9.15 might allow row hammer attacks (for authentication bypass or privilege escalation) because application logic sometimes is based on not equaling an error value (…

CVSS 7.0 · High
Vendor/product tagsBeta · best-effort

CVE-2022-43995

Published Nov 2, 2022

Sudo 1.8.0 through 1.9.12, with the crypt() password backend, contains a plugins/sudoers/auth/passwd.c array-out-of-bounds error that can result in a heap-based buffer over-read.…

CVSS 7.1 · High
Vendor/product tagsBeta · best-effort

CVE-2019-18634

Published Jan 29, 2020

In Sudo before 1.8.26, if pwfeedback is enabled in /etc/sudoers, users can trigger a stack-based buffer overflow in the privileged sudo process. (pwfeedback is a default setting i…

CVSS 7.8 · High
evidence mentions
5
Buzz score
29.4
Vendor/product tagsBeta · best-effort

CVE-2019-18684

Published Nov 4, 2019

Sudo through 1.8.29 allows local users to escalate to root if they have write access to file descriptor 3 of the sudo process. This occurs because of a race condition between dete…

CVSS 7.0 · High
Vendor/product tagsBeta · best-effort

CVE-2019-14287

Published Oct 17, 2019

In Sudo before 1.8.28, an attacker with access to a Runas ALL sudoer account can bypass certain policy blacklists and session PAM modules, and can cause incorrect logging, by invo…

CVSS 8.8 · High
evidence mentions
3
Buzz score
29.7
Public PoC observed

CVE-2016-7076

Published May 29, 2018

sudo before version 1.8.18p1 is vulnerable to a bypass in the sudo noexec restriction if application run via sudo executed wordexp() C library function with a user supplied argume…

CVSS 6.4 · Medium
Vendor/product tagsBeta · best-effort

CVE-2015-8239

Published Oct 10, 2017

The SHA-2 digest support in the sudoers plugin in sudo after 1.8.7 allows local users with write permissions to parts of the called command to replace them before it is executed.

CVSS 7.0 · High
Vendor/product tagsBeta · best-effort

CVE-2017-1000368

Published Jun 5, 2017

Todd Miller's sudo version 1.8.20p1 and earlier is vulnerable to an input validation (embedded newlines) in the get_process_ttyname() function resulting in information disclosure…

CVSS 8.2 · High
Vendor/product tagsBeta · best-effort

CVE-2017-1000367

Published Jun 5, 2017

Todd Miller's sudo version 1.8.20 and earlier is vulnerable to an input validation (embedded spaces) in the get_process_ttyname() function resulting in information disclosure and…

CVSS 6.4 · Medium
evidence mentions
6
Buzz score
34.0
Vendor/product tagsBeta · best-effort

CVE-2014-9680

Published Apr 24, 2017

sudo before 1.8.12 does not ensure that the TZ environment variable is associated with a zoneinfo file, which allows local users to open arbitrary files for read access (but not v…

CVSS 3.3 · Low
Vendor/product tagsBeta · best-effort

CVE-2015-5602

Published Nov 17, 2015

sudoedit in Sudo before 1.8.15 allows local users to gain privileges via a symlink attack on a file whose full path is defined using multiple wildcards in /etc/sudoers, as demonst…

CVSS 7.2 · High
Vendor/product tagsBeta · best-effort

CVE-2002-0184

Published May 16, 2002

Sudo before 1.6.6 contains an off-by-one error that can result in a heap-based buffer overflow that may allow local users to gain root privileges via special characters in the -p…

CVSS 7.8 · High
Buzz score
4.0
OTX pulse activity
Vendor/product tagsBeta · best-effort
Showing 1-24 of 24 CVEsPage 1 of 1