The secure path feature in env.c in sudo 1.3.1 through 1.6.9p22 and 1.7.0 through 1.7.2p6 does not properly handle an environment that contains multiple PATH variables, which might allow local users to gain privileges via a crafted value of the last PATH variable.
CVSS Details
- CVSS 3.1 Base Score: 7.8
Covered by Rapid7
| Product | Vendor Advisory | Solution File | Added | Published |
|---|---|---|---|---|
| Centos_linux | — | Upgrade sudo | Dec 1, 2016 | Jun 7, 2010 |
| Debian | — | Upgrade sudo | Jul 30, 2024 | Jun 7, 2010 |
| Freebsd | — | Upgrade sudo | Dec 10, 2025 | Jun 2, 2010 |
| Gentoo Linux | — | Upgrade app-admin/sudo. | Oct 30, 2017 | Jun 7, 2010 |
| Oracle_linux | — | Upgrade sudo | Oct 16, 2024 | Jun 7, 2010 |
| Suse | — | Upgrade sudo-develUpgrade sudo-policy-wheel-auth-selfUpgrade sudoUpgrade system-group-sudoUpgrade sudo-policy-sudo-auth-selfUpgrade sudo-plugin-python | Feb 17, 2015 | Jun 28, 2013 |
| Ubuntu | — | Upgrade sudoUpgrade sudo-ldap | Nov 8, 2024 | Jun 7, 2010 |
| Vmsa 2010 0015 | — | Upgrade VMware ESX 4.0 to build number 294855 | Nov 19, 2010 | Jun 7, 2010 |
Prioritise with Active Threat Intelligence
With curated Threat Intelligence, you can see which vulnerabilities truly put you at risk, prioritize what matters most, and act before attackers do.
Explore Intelligence Hub