High severity7.2NVD Advisory· Published Feb 28, 2023· Updated Jun 17, 2026
CVE-2023-27320
CVE-2023-27320
Description
Sudo before 1.9.13p2 has a double free in the per-command chroot feature.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
14cpe:2.3:a:sudo_project:sudo:*:*:*:*:*:*:*:*+ 3 more
- cpe:2.3:a:sudo_project:sudo:*:*:*:*:*:*:*:*range: >=1.9.8,<1.9.13
- cpe:2.3:a:sudo_project:sudo:1.9.13:-:*:*:*:*:*:*
- cpe:2.3:a:sudo_project:sudo:1.9.13:p1:*:*:*:*:*:*
- (no CPE)range: <1.9.13p2
cpe:2.3:o:fedoraproject:fedora:36:*:*:*:*:*:*:*+ 2 more
- cpe:2.3:o:fedoraproject:fedora:36:*:*:*:*:*:*:*
- cpe:2.3:o:fedoraproject:fedora:37:*:*:*:*:*:*:*
- cpe:2.3:o:fedoraproject:fedora:38:*:*:*:*:*:*:*
- Sudo/Sudodescription
- osv-coords6 versionspkg:rpm/opensuse/sudo&distro=openSUSE%20Leap%2015.4pkg:rpm/opensuse/sudo&distro=openSUSE%20Leap%20Micro%205.3pkg:rpm/opensuse/sudo&distro=openSUSE%20Tumbleweedpkg:rpm/suse/sudo&distro=SUSE%20Linux%20Enterprise%20Micro%205.3pkg:rpm/suse/sudo&distro=SUSE%20Linux%20Enterprise%20Micro%205.4pkg:rpm/suse/sudo&distro=SUSE%20Linux%20Enterprise%20Module%20for%20Basesystem%2015%20SP4
< 1.9.9-150400.4.26.1+ 5 more
- (no CPE)range: < 1.9.9-150400.4.26.1
- (no CPE)range: < 1.9.9-150400.4.26.1
- (no CPE)range: < 1.9.13p3-2.1
- (no CPE)range: < 1.9.9-150400.4.26.1
- (no CPE)range: < 1.9.9-150400.4.26.1
- (no CPE)range: < 1.9.9-150400.4.26.1
Patches
Vulnerability mechanics
References
8- www.openwall.com/lists/oss-security/2023/02/28/1nvdExploitMailing ListThird Party Advisory
- www.openwall.com/lists/oss-security/2023/03/01/8nvdMailing ListThird Party Advisory
- security.gentoo.org/glsa/202309-12nvdThird Party Advisory
- security.netapp.com/advisory/ntap-20230413-0009/nvdThird Party Advisory
- www.sudo.ws/releases/stable/nvdRelease Notes
- lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/332KN4QI6QXB7NI7SWSJ2EQJKWIILFN6/nvd
- lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/FPLXMRAMXC3BYL4DNKVTK3V6JDMUXZ7B/nvd
- lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/X6VW24YGXJYI4NZ5HZPQCF4MCE7766AU/nvd
News mentions
0No linked articles in our index yet.