VYPR
High severity7.8CISA KEVNVD Advisory· Published Jan 26, 2021· Updated Jun 17, 2026

CVE-2021-3156

CVE-2021-3156

Description

Sudo before 1.9.5p2 contains an off-by-one error that can result in a heap-based buffer overflow, which allows privilege escalation to root via "sudoedit -s" and a command-line argument that ends with a single backslash character.

AI Insight

LLM-synthesized narrative grounded in this CVE's description and references.

Affected products

71

Patches

Vulnerability mechanics

References

35

News mentions

0

No linked articles in our index yet.