In Sudo before 1.8.28, an attacker with access to a Runas ALL sudoer account can bypass certain policy blacklists and session PAM modules, and can cause incorrect logging, by invoking sudo with a crafted user ID. For example, this allows bypass of !root configuration, and USER= logging, for a "sudo -u \#$((0xffffffff))" command.
CVSS Details
- CVSS 3.1 Base Score: 8.8
- CVSS 3.1 Vector: (CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H)
Covered by Rapid7
| Product | Vendor Advisory | Solution File | Added | Published |
|---|---|---|---|---|
| Alpine Linux | alpine-linux-upgrade-sudo | Aug 22, 2024 | Oct 17, 2019 | |
| Amazon Linux Ami 2 | amazon-linux-ami-2-upgrade-sudoamazon-linux-ami-2-upgrade-sudo-debuginfoamazon-linux-ami-2-upgrade-sudo-devel | Apr 27, 2020 | Oct 17, 2019 | |
| Amazon_linux | — | amazon-linux-upgrade-sudo | Oct 15, 2019 | Oct 12, 2019 |
| Arch Linux | View advisory ↗View advisory ↗View advisory ↗View advisory ↗View advisory ↗View advisory ↗View advisory ↗View advisory ↗View advisory ↗View advisory ↗View advisory ↗View advisory ↗View advisory ↗View advisory ↗View advisory ↗View advisory ↗View advisory ↗View advisory ↗View advisory ↗View advisory ↗View advisory ↗View advisory ↗View advisory ↗View advisory ↗View advisory ↗View advisory ↗View advisory ↗View advisory ↗View advisory ↗View advisory ↗View advisory ↗View advisory ↗View advisory ↗View advisory ↗View advisory ↗View advisory ↗View advisory ↗View advisory ↗View advisory ↗ | arch-linux-upgrade-latest | Jul 11, 2025 | Oct 17, 2019 |
| Centos_linux | — | centos-upgrade-sudocentos-upgrade-sudo-debuginfocentos-upgrade-sudo-debugsourcecentos-upgrade-sudo-devel | Oct 25, 2019 | Oct 17, 2019 |
| Debian | debian-upgrade-sudo | Oct 16, 2019 | Oct 16, 2019 | |
| Freebsd | freebsd-upgrade-package-sudo | Dec 10, 2025 | Oct 24, 2019 | |
| Gentoo Linux | gentoo-linux-upgrade-app-admin-sudo | Mar 16, 2020 | Oct 17, 2019 | |
| Huawei Euleros 2_0_sp2 | huawei-euleros-2_0_sp2-upgrade-sudo | Dec 4, 2019 | Oct 17, 2019 | |
| Huawei Euleros 2_0_sp3 | huawei-euleros-2_0_sp3-upgrade-sudo | Dec 18, 2019 | Oct 17, 2019 | |
| Huawei Euleros 2_0_sp5 | huawei-euleros-2_0_sp5-upgrade-sudo | Nov 19, 2019 | Oct 17, 2019 | |
| Huawei Euleros 2_0_sp8 | huawei-euleros-2_0_sp8-upgrade-sudo | Nov 28, 2019 | Oct 17, 2019 | |
| Oracle Solaris | oracle-solaris-11-3-upgrade-security-sudo-1-8-28-0-175-3-36-0-25-0oracle-solaris-11-4-upgrade-security-sudo-1-8-28-11-4-15-0-1-4-0 | Nov 20, 2019 | Oct 17, 2019 | |
| Oracle_linux | — | oracle-linux-upgrade-sudooracle-linux-upgrade-sudo-devel | Nov 8, 2019 | Oct 14, 2019 |
| Redhat Openshift | linuxrpm-upgrade-redhat-coreos | Dec 29, 2020 | Oct 17, 2019 | |
| Redhat_linux | redhat-upgrade-sudoredhat-upgrade-sudo-debuginforedhat-upgrade-sudo-debugsourceredhat-upgrade-sudo-devel | Oct 25, 2019 | Oct 17, 2019 | |
| Suse | — | suse-upgrade-sudosuse-upgrade-sudo-develsuse-upgrade-sudo-plugin-pythonsuse-upgrade-sudo-test | Oct 16, 2019 | Oct 14, 2019 |
| Ubuntu | ubuntu-pro-upgrade-sudoubuntu-pro-upgrade-sudo-ldapubuntu-upgrade-sudoubuntu-upgrade-sudo-ldap | Oct 15, 2019 | Oct 14, 2019 | |
| Vmware Photon_os | vmware-photon_os_update_tdnf | Jan 20, 2025 | Oct 17, 2019 |
Prioritise with Active Threat Intelligence
With curated Threat Intelligence, you can see which vulnerabilities truly put you at risk, prioritize what matters most, and act before attackers do.
Explore Intelligence Hub