VYPR

rpm package

suse/sudo&distro=SUSE Linux Micro 6.1

pkg:rpm/suse/sudo&distro=SUSE%20Linux%20Micro%206.1

Vulnerabilities (3)

  • CVE-2026-35535HigApr 3, 2026
    affected < 1.9.15p5-slfo.1.1_3.1fixed 1.9.15p5-slfo.1.1_3.1

    In Sudo through 1.9.17p2 before 3e474c2, a failure of a setuid, setgid, or setgroups call, during a privilege drop before running the mailer, is not a fatal error and can lead to privilege escalation.

  • CVE-2025-32463KEVJun 30, 2025
    affected < 1.9.15p5-slfo.1.1_2.1fixed 1.9.15p5-slfo.1.1_2.1

    Sudo before 1.9.17p1 allows local users to obtain root access because /etc/nsswitch.conf from a user-controlled directory is used with the --chroot option.

  • CVE-2025-32462Jun 30, 2025
    affected < 1.9.15p5-slfo.1.1_2.1fixed 1.9.15p5-slfo.1.1_2.1

    Sudo before 1.9.17p1, when used with a sudoers file that specifies a host that is neither the current host nor ALL, allows listed users to execute commands on unintended machines.