7.8 High
CVSS3
Attack Vector
LOCAL
Attack Complexity
LOW
Privileges Required
LOW
User Interaction
NONE
Scope
UNCHANGED
Confidentiality Impact
HIGH
Integrity Impact
HIGH
Availability Impact
HIGH
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
7.2 High
AI Score
Confidence
Low
0.001 Low
EPSS
Percentile
19.7%
Software: sudo 1.8.29
OS: ROSA Virtualization 2.1
package_evr_string: sudo-1.8.29-8.rv3.1
CVE-ID: CVE-2023-22809
BDU-ID: 2023-00210
CVE-Crit: MEDIUM.
CVE-DESC.: A vulnerability in the sudoedit function of the Sudo system administration program is related to errors in the handling of additional arguments in environment variables. Exploitation of the vulnerability could allow an attacker acting remotely to escalate their privileges
CVE-STATUS: Fixed
CVE-REV: To close, run the yum update sudo command
7.8 High
CVSS3
Attack Vector
LOCAL
Attack Complexity
LOW
Privileges Required
LOW
User Interaction
NONE
Scope
UNCHANGED
Confidentiality Impact
HIGH
Integrity Impact
HIGH
Availability Impact
HIGH
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
7.2 High
AI Score
Confidence
Low
0.001 Low
EPSS
Percentile
19.7%