7.2 High
CVSS2
Attack Vector
LOCAL
Attack Complexity
LOW
Authentication
NONE
Confidentiality Impact
COMPLETE
Integrity Impact
COMPLETE
Availability Impact
COMPLETE
AV:L/AC:L/Au:N/C:C/I:C/A:C
0.0004 Low
EPSS
Percentile
5.1%
sudo 1.6.x and 1.7.x before 1.7.9p1, and 1.8.x before 1.8.4p5, does not properly support configurations that use a netmask syntax, which allows local users to bypass intended command restrictions in opportunistic circumstances by executing a command on a host that has an IPv4 address.
OS | Version | Architecture | Package | Version | Filename |
---|---|---|---|---|---|
Debian | 12 | all | sudo | < 1.8.3p2-1.1 | sudo_1.8.3p2-1.1_all.deb |
Debian | 11 | all | sudo | < 1.8.3p2-1.1 | sudo_1.8.3p2-1.1_all.deb |
Debian | 999 | all | sudo | < 1.8.3p2-1.1 | sudo_1.8.3p2-1.1_all.deb |
Debian | 13 | all | sudo | < 1.8.3p2-1.1 | sudo_1.8.3p2-1.1_all.deb |