Vulnerability & Exploit Database

Back to search

FreeBSD: sudo -- Authentication bypass when clock is reset (CVE-2013-1775)

Severity CVSS Published Added Modified
7 (AV:L/AC:M/Au:N/C:C/I:C/A:C) March 04, 2013 May 07, 2014 May 26, 2016

Available Exploits 

Description

sudo 1.6.0 through 1.7.10p6 and sudo 1.8.0 through 1.8.6p6 allows local users or physically proximate attackers to bypass intended time restrictions and retain privileges without re-authenticating by setting the system clock and sudo user timestamp to the epoch.

Free Nexpose Download

Discover, prioritize, and remediate security risks today!

 Download now

References

Solution

freebsd-upgrade-package-sudo

Related Vulnerabilities