VYPR
Unrated severityNVD Advisory· Published May 18, 2012· Updated Apr 29, 2026

CVE-2012-2337

CVE-2012-2337

Description

sudo 1.6.x and 1.7.x before 1.7.9p1, and 1.8.x before 1.8.4p5, does not properly support configurations that use a netmask syntax, which allows local users to bypass intended command restrictions in opportunistic circumstances by executing a command on a host that has an IPv4 address.

Affected products

19
  • Todd Miller/Sudo19 versions
    cpe:2.3:a:todd_miller:sudo:1.6:*:*:*:*:*:*:*+ 18 more
    • cpe:2.3:a:todd_miller:sudo:1.6:*:*:*:*:*:*:*
    • cpe:2.3:a:todd_miller:sudo:1.6.1:*:*:*:*:*:*:*
    • cpe:2.3:a:todd_miller:sudo:1.6.2:*:*:*:*:*:*:*
    • cpe:2.3:a:todd_miller:sudo:1.6.2p3:*:*:*:*:*:*:*
    • cpe:2.3:a:todd_miller:sudo:1.6.3:*:*:*:*:*:*:*
    • cpe:2.3:a:todd_miller:sudo:1.6.3_p7:*:*:*:*:*:*:*
    • cpe:2.3:a:todd_miller:sudo:1.6.4:*:*:*:*:*:*:*
    • cpe:2.3:a:todd_miller:sudo:1.6.4p2:*:*:*:*:*:*:*
    • cpe:2.3:a:todd_miller:sudo:1.6.5:*:*:*:*:*:*:*
    • cpe:2.3:a:todd_miller:sudo:1.6.6:*:*:*:*:*:*:*
    • cpe:2.3:a:todd_miller:sudo:1.6.7:*:*:*:*:*:*:*
    • cpe:2.3:a:todd_miller:sudo:1.6.7p5:*:*:*:*:*:*:*
    • cpe:2.3:a:todd_miller:sudo:1.6.8:*:*:*:*:*:*:*
    • cpe:2.3:a:todd_miller:sudo:1.6.8p12:*:*:*:*:*:*:*
    • cpe:2.3:a:todd_miller:sudo:1.6.9:*:*:*:*:*:*:*
    • cpe:2.3:a:todd_miller:sudo:1.6.9p20:*:*:*:*:*:*:*
    • cpe:2.3:a:todd_miller:sudo:1.6.9p21:*:*:*:*:*:*:*
    • cpe:2.3:a:todd_miller:sudo:1.6.9p22:*:*:*:*:*:*:*
    • cpe:2.3:a:todd_miller:sudo:1.6.9p23:*:*:*:*:*:*:*

Patches

0

No patches discovered yet.

Vulnerability mechanics

AI mechanics synthesis has not run for this CVE yet.

References

11

News mentions

0

No linked articles in our index yet.