Lucene search

K
redhatcveRedhat.comRH:CVE-2017-1000368
HistoryJun 06, 2017 - 12:49 p.m.

CVE-2017-1000368

2017-06-0612:49:37
redhat.com
access.redhat.com
10

0.002 Low

EPSS

Percentile

58.7%

It was found that the original fix for CVE-2017-1000367 was incomplete. A flaw was found in the way sudo parsed tty information from the process status file in the proc filesystem. A local user with privileges to execute commands via sudo could use this flaw to escalate their privileges to root.