-Infinity
0

Vendor Risk Score

See how sudo compares to other vendors in security performance

View Risk Score →

oss-secMultiple vulnerabilities in AppArmor

First published (updated )

Sudo SudoIn Sudo through 1.9.17p2 before 3e474c2, a failure of a setuid, setgid, or setgroups call, during a …

Risk 33
Severity
7
First published (updated )

BleepingComputerCISA warns of critical Linux Sudo flaw exploited in attacks

First published (updated )

[EXT] [oss-security] CVE-2023-51767: a bogus CVE in OpenSSH

CVE-2025-32462: sudo: LPE via host option

First published (updated )
Social
reddit
Free Weekly Intel

Don't miss critical vulnerabilities

Join thousands of security professionals who receive our weekly digest of trending CVEs, zero-days, and exploited vulnerabilities.

No spam. Unsubscribe anytime.

CVE-2025-32463: sudo local privilege escalation via chroot option

CVE-2025-32462: sudo local privilege escalation via host option

Canonical Ubuntu LinuxSudo Inclusion of Functionality from Untrusted Control Sphere Vulnerability

Risk 97
Severity
9.3
First published (updated )

Sudo SudoAn attacker can leverage sudo's `-R` (`--chroot`) option to run arbitrary commands as root, even if …

Risk 33
Severity
7
First published (updated )

IBM Cloud Pak Systemsudo local privilege escalation via host option

Risk 94
Severity
8.8
First published (updated )
Free Weekly Intel

Don't miss critical vulnerabilities

Join thousands of security professionals who receive our weekly digest of trending CVEs, zero-days, and exploited vulnerabilities.

No spam. Unsubscribe anytime.

Sudo SudoSudo's host (`-h` or `--host`) option is intended to be used in conjunction with the list option (`-…

Risk 33
Severity
7
First published (updated )

Mayhem: Targeted Corruption of Register and Stack Variables

Sudo SudoSudo 1.8.0 through 1.9.12, with the crypt() password backend, contains a plugins/sudoers/auth/passwd…

Risk 33
Severity
7
First published (updated )

IBM Security GuardiumSudo Heap-Based Buffer Overflow Vulnerability

Risk 94
Severity
8.4
First published (updated )

Apple macOS Catalinasudo. This issue was addressed by updating to sudo version 1.8.31.

Risk 45
Severity
7.5
First published (updated )
Free Weekly Intel

Don't miss critical vulnerabilities

Join thousands of security professionals who receive our weekly digest of trending CVEs, zero-days, and exploited vulnerabilities.

No spam. Unsubscribe anytime.

Sudo SudoIn Sudo through 1.8.29, the fact that a user has been blocked (e.g., by using the ! character in the…

Risk 43
Severity
7.5
First published (updated )

Sudo SudoRace Condition

Risk 18
Severity
4
First published (updated )

Sudo SudoDue to upstream changes in how sudo 1.7.3 handles group membership checks, the patch used to correct…

Risk 18
Severity
4
First published (updated )

Sudo SudoA security flaw was found in the way Sudo performed matching for user described by a password agains…

Risk 33
Severity
7
First published (updated )

Sudo SudoAnders Kaseorg and Evan Broder reported a flaw in the way sudo handled duplicated environment variab…

Risk 18
Severity
4
First published (updated )
Free Weekly Intel

Don't miss critical vulnerabilities

Join thousands of security professionals who receive our weekly digest of trending CVEs, zero-days, and exploited vulnerabilities.

No spam. Unsubscribe anytime.

Sudo SudoSudo failed to properly reset group permissions, when "runas_default" option was used. If a local, u…

Risk 33
Severity
7
First published (updated )

Sudo SudoIt was discovered that sudo's sudoers file parses does not correctly handle group specification in R…

Risk 19
Severity
4
First published (updated )

Sudo SudoSudo vulnerabilities

Risk 53
Advisory
USN-7604-1

Contact

SecAlerts Pty Ltd.
132 Wickham Terrace
Fortitude Valley,
QLD 4006, Australia
info@secalerts.co
By using SecAlerts services, you agree to our services end-user license agreement. This website is safeguarded by reCAPTCHA and governed by the Google Privacy Policy and Terms of Service. All names, logos, and brands of products are owned by their respective owners, and any usage of these names, logos, and brands for identification purposes only does not imply endorsement. If you possess any content that requires removal, please get in touch with us.
© 2026 SecAlerts Pty Ltd.
ABN: 70 645 966 203, ACN: 645 966 203