VYPR

rpm package

suse/sudo&distro=SUSE Linux Enterprise Module for Basesystem 15 SP7

pkg:rpm/suse/sudo&distro=SUSE%20Linux%20Enterprise%20Module%20for%20Basesystem%2015%20SP7

Vulnerabilities (3)

  • CVE-2026-35535HigApr 3, 2026
    affected < 1.9.15p5-150600.3.15.1fixed 1.9.15p5-150600.3.15.1

    In Sudo through 1.9.17p2 before 3e474c2, a failure of a setuid, setgid, or setgroups call, during a privilege drop before running the mailer, is not a fatal error and can lead to privilege escalation.

  • CVE-2025-32463KEVJun 30, 2025
    affected < 1.9.15p5-150600.3.9.1fixed 1.9.15p5-150600.3.9.1

    Sudo before 1.9.17p1 allows local users to obtain root access because /etc/nsswitch.conf from a user-controlled directory is used with the --chroot option.

  • CVE-2025-32462Jun 30, 2025
    affected < 1.9.15p5-150600.3.9.1fixed 1.9.15p5-150600.3.9.1

    Sudo before 1.9.17p1, when used with a sudoers file that specifies a host that is neither the current host nor ALL, allows listed users to execute commands on unintended machines.