Lucene search

K
prionPRIOn knowledge basePRION:CVE-2017-1000368
HistoryJun 05, 2017 - 4:29 p.m.

Design/Logic Flaw

2017-06-0516:29:00
PRIOn knowledge base
www.prio-n.com
5

7.8 High

AI Score

Confidence

High

0.001 Low

EPSS

Percentile

28.7%

Todd Miller’s sudo version 1.8.20p1 and earlier is vulnerable to an input validation (embedded newlines) in the get_process_ttyname() function resulting in information disclosure and command execution.

CPENameOperatorVersion
sudole1.8.20
sudoeq1.8.20 p1