Lucene search

K
veracodeVeracode Vulnerability DatabaseVERACODE:24693
HistoryApr 10, 2020 - 1:01 a.m.

Privilege Escalation

2020-04-1001:01:50
Veracode Vulnerability Database
sca.analysiscenter.veracode.com
25

EPSS

0.001

Percentile

17.2%

sudo is vulnerable to privilege escalation. A flaw was found in the sudo password checking logic. In configurations where the sudoers settings allowed a user to run a command using sudo with only the group ID changed, sudo failed to prompt for the user’s password before running the specified command with the elevated group privileges.

References