Lucene search

K
veracodeVeracode Vulnerability DatabaseVERACODE:39954
HistoryMar 24, 2023 - 3:41 p.m.

Information Disclosure

2023-03-2415:41:21
Veracode Vulnerability Database
sca.analysiscenter.veracode.com
11
sudo vulnerability
sudoreplay
information disclosure
library vulnerability
log messages
sensitive information

0.001 Low

EPSS

Percentile

33.4%

sudo is vulnerable to Information Disclosure. The vulnerability exists due to the library does not properly escape the control characters in sudoreplay output of log messages, which allows an attacker to gain sensitive information