VYPR
Unrated severityNVD Advisory· Published Jan 12, 2021· Updated Aug 3, 2024

CVE-2021-23240

CVE-2021-23240

Description

selinux_edit_copy_tfiles in sudoedit in Sudo before 1.9.5 allows a local unprivileged user to gain file ownership and escalate privileges by replacing a temporary file with a symlink to an arbitrary file target. This affects SELinux RBAC support in permissive mode. Machines without SELinux are not vulnerable.

AI Insight

LLM-synthesized narrative grounded in this CVE's description and references.

Affected products

34

Patches

Vulnerability mechanics

References

8

News mentions

0

No linked articles in our index yet.