Sudo before 1.9.17p1, when used with a sudoers file that specifies a host that is neither the current host nor ALL, allows listed users to execute commands on unintended machines.
The product performs an authorization check when an actor attempts to access a resource or perform an action, but it does not correctly perform the check.
Name | Vendor | Start Version | End Version |
---|---|---|---|
Sudo | Sudo_project | * | 1.9.17 (excluding) |
Sudo | Sudo_project | 1.9.17 (including) | 1.9.17 (including) |
Red Hat Enterprise Linux 10 | RedHat | sudo-0:1.9.15-8.p5.el10_0.2 | * |
Red Hat Enterprise Linux 7 Extended Lifecycle Support | RedHat | sudo-0:1.8.23-10.el7_9.4 | * |
Red Hat Enterprise Linux 8 | RedHat | sudo-0:1.9.5p2-1.el8_10.1 | * |
Red Hat Enterprise Linux 8.2 Advanced Update Support | RedHat | sudo-0:1.8.29-5.el8_2.3 | * |
Red Hat Enterprise Linux 8.4 Advanced Mission Critical Update Support | RedHat | sudo-0:1.8.29-7.el8_4.3 | * |
Red Hat Enterprise Linux 8.4 Extended Update Support Long-Life Add-On | RedHat | sudo-0:1.8.29-7.el8_4.3 | * |
Red Hat Enterprise Linux 8.6 Advanced Mission Critical Update Support | RedHat | sudo-0:1.9.5p2-1.el8_6.1 | * |
Red Hat Enterprise Linux 8.6 Telecommunications Update Service | RedHat | sudo-0:1.9.5p2-1.el8_6.1 | * |
Red Hat Enterprise Linux 8.6 Update Services for SAP Solutions | RedHat | sudo-0:1.9.5p2-1.el8_6.1 | * |
Red Hat Enterprise Linux 8.8 Telecommunications Update Service | RedHat | sudo-0:1.9.5p2-1.el8_8.1 | * |
Red Hat Enterprise Linux 8.8 Update Services for SAP Solutions | RedHat | sudo-0:1.9.5p2-1.el8_8.1 | * |
Red Hat Enterprise Linux 9 | RedHat | sudo-0:1.9.5p2-10.el9_6.1 | * |
Red Hat Enterprise Linux 9 | RedHat | sudo-0:1.9.5p2-10.el9_6.1 | * |
Red Hat Enterprise Linux 9.0 Update Services for SAP Solutions | RedHat | sudo-0:1.9.5p2-7.el9_0.5 | * |
Red Hat Enterprise Linux 9.2 Update Services for SAP Solutions | RedHat | sudo-0:1.9.5p2-9.el9_2.3 | * |
Red Hat Enterprise Linux 9.4 Extended Update Support | RedHat | sudo-0:1.9.5p2-10.el9_4.1 | * |
Red Hat OpenShift Container Platform 4.12 | RedHat | rhcos-412.86.202507280202-0 | * |
Red Hat OpenShift Container Platform 4.13 | RedHat | rhcos | * |
Red Hat OpenShift Container Platform 4.14 | RedHat | rhcos-414.92.202508041909-0 | * |
Red Hat OpenShift Container Platform 4.15 | RedHat | rhcos-415.92.202507301737-0 | * |
Red Hat OpenShift Container Platform 4.16 | RedHat | rhcos-416.94.202507100308-0 | * |
Red Hat OpenShift Container Platform 4.17 | RedHat | rhcos-417.94.202507291008-0 | * |
Red Hat OpenShift Container Platform 4.18 | RedHat | rhcos-418.94.202507091512-0 | * |
Red Hat OpenShift Container Platform 4.19 | RedHat | rhcos-4.19.9.6.202507081759-0 | * |
Sudo | Ubuntu | devel | * |
Sudo | Ubuntu | esm-infra-legacy/trusty | * |
Sudo | Ubuntu | esm-infra/bionic | * |
Sudo | Ubuntu | esm-infra/focal | * |
Sudo | Ubuntu | esm-infra/xenial | * |
Sudo | Ubuntu | jammy | * |
Sudo | Ubuntu | noble | * |
Sudo | Ubuntu | oracular | * |
Sudo | Ubuntu | plucky | * |
Sudo | Ubuntu | upstream | * |