VYPR
Medium severity6.6NVD Advisory· Published Dec 23, 2023· Updated Jun 17, 2026

CVE-2023-7090

CVE-2023-7090

Description

A flaw was found in sudo in the handling of ipa_hostname, where ipa_hostname from /etc/sssd/sssd.conf was not propagated in sudo. Therefore, it leads to privilege mismanagement vulnerability in applications, where client hosts retain privileges even after retracting them.

AI Insight

LLM-synthesized narrative grounded in this CVE's description and references.

Affected products

3
  • Sudo Project/Sudo2 versions
    cpe:2.3:a:sudo_project:sudo:*:*:*:*:*:*:*:*+ 1 more
    • cpe:2.3:a:sudo_project:sudo:*:*:*:*:*:*:*:*range: <1.8.28
    • (no CPE)range: <=1.8.28
  • Range: 1.8.28

Patches

Vulnerability mechanics

References

5

News mentions

0

No linked articles in our index yet.