Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
In Sudo through 1.9.17p2 before 3e474c2, a failure of a setuid, setgid, or setgroups call, during a privilege drop before running the mailer, is not a fatal error and can lead to privilege escalation.
CVSS Information
CVSS:3.1/AV:L/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:H
Vulnerability Type
特权放弃/降低错误
Vulnerability Title
Sudo 安全漏洞
Vulnerability Description
Sudo是Sudo Project开源的一款使用于类Unix系统的,允许用户通过安全的方式使用特殊的权限执行命令的程序。 Sudo 1.9.17p2及之前版本存在安全漏洞,该漏洞源于权限丢弃失败未被视为致命错误,可能导致权限提升。
CVSS Information
N/A
Vulnerability Type
N/A