Release sudo-1.9.5p2-1.el8_9 ALSA-2024:0811
- Dominant language
- No language data
- Stars
- 2
- Forks
- 0
- PR merge metrics
- No merged PRs in 30d
Description
sudo security update
Severity: moderate
Description
The sudo packages contain the sudo utility which allows system
administrators to provide certain users with the permission to execute
privileged commands, which are used for system management purposes, without
having to log in as root.
Bug Fix(es) and Enhancement(s):
* CVE-2023-28487 sudo: Sudo does not escape control characters in sudoreplay output
* CVE-2023-28486 sudo: Sudo does not escape control characters in log messages
* CVE-2023-42465 sudo: Targeted Corruption of Register and Stack Variables
Affected packages:
sudo-1.9.5p2-1.el8_9.x86_64
sudo-1.9.5p2-1.el8_9.s390x
sudo-1.9.5p2-1.el8_9.ppc64le
sudo-1.9.5p2-1.el8_9.aarch64
Contributor guide
Assessment
This issue has not been assessed yet.