Vulnerability Name:

CVE-2010-0426 (CCN-56483)

Assigned:2010-02-21
Published:2010-02-21
Updated:2018-10-10
Summary:sudo 1.6.x before 1.6.9p21 and 1.7.x before 1.7.2p4, when a pseudo-command is enabled, permits a match between the name of the pseudo-command and the name of an executable file in an arbitrary directory, which allows local users to gain privileges via a crafted executable file, as demonstrated by a file named sudoedit in a user's home directory.
CVSS v3 Severity:7.5 High (CCN CVSS v3.1 Vector: CVSS:3.1/AV:L/AC:H/PR:L/UI:R/S:C/C:H/I:H/A:H)
Exploitability Metrics:Attack Vector (AV): Local
Attack Complexity (AC): High
Privileges Required (PR): Low
User Interaction (UI): Required
Scope:Scope (S): Changed
Impact Metrics:Confidentiality (C): High
Integrity (I): High
Availibility (A): High
CVSS v2 Severity:6.9 Medium (CVSS v2 Vector: AV:L/AC:M/Au:N/C:C/I:C/A:C)
5.1 Medium (Temporal CVSS v2 Vector: AV:L/AC:M/Au:N/C:C/I:C/A:C/E:U/RL:OF/RC:C)
Exploitability Metrics:Access Vector (AV): Local
Access Complexity (AC): Medium
Authentication (Au): None
Impact Metrics:Confidentiality (C): Complete
Integrity (I): Complete
Availibility (A): Complete
6.6 Medium (CCN CVSS v2 Vector: AV:L/AC:M/Au:S/C:C/I:C/A:C)
4.9 Medium (CCN Temporal CVSS v2 Vector: AV:L/AC:M/Au:S/C:C/I:C/A:C/E:U/RL:OF/RC:C)
Exploitability Metrics:Access Vector (AV): Local
Access Complexity (AC): Medium
Athentication (Au): Single_Instance
Impact Metrics:Confidentiality (C): Complete
Integrity (I): Complete
Availibility (A): Complete
6.6 Medium (REDHAT CVSS v2 Vector: AV:L/AC:M/Au:S/C:C/I:C/A:C)
4.9 Medium (REDHAT Temporal CVSS v2 Vector: AV:L/AC:M/Au:S/C:C/I:C/A:C/E:U/RL:OF/RC:C)
Exploitability Metrics:Access Vector (AV): Local
Access Complexity (AC): Medium
Authentication (Au): Single_Instance
Impact Metrics:Confidentiality (C): Complete
Integrity (I): Complete
Availibility (A): Complete
Vulnerability Type:CWE-264
Vulnerability Consequences:Gain Privileges
References:Source: CONFIRM
Type: Patch
ftp://ftp.sudo.ws/pub/sudo/sudo-1.6.9p21.patch.gz

Source: MISC
Type: UNKNOWN
http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=570737

Source: MITRE
Type: CNA
CVE-2010-0426

Source: FEDORA
Type: UNKNOWN
FEDORA-2010-6701

Source: FEDORA
Type: UNKNOWN
FEDORA-2010-6749

Source: SUSE
Type: UNKNOWN
SUSE-SR:2010:006

Source: CCN
Type: VMSA-2010-0009
ESXi utilities and ESX Service Console third party updates

Source: CCN
Type: RHSA-2010-0122
Important: sudo security update

Source: CCN
Type: SA38659
sudo "sudoedit" Privilege Escalation Security Issue

Source: SECUNIA
Type: Vendor Advisory
38659

Source: SECUNIA
Type: UNKNOWN
38762

Source: SECUNIA
Type: UNKNOWN
38795

Source: SECUNIA
Type: UNKNOWN
38803

Source: SECUNIA
Type: UNKNOWN
38915

Source: SECUNIA
Type: UNKNOWN
39399

Source: CCN
Type: SA39920
VMware vMA kernel Multiple Vulnerabilities

Source: CCN
Type: SA39972
VMware ESXi ntp Mode 7 Request Denial of Service

Source: CCN
Type: SA39973
VMware ESX Multiple krb5 Vulnerabilities

Source: CCN
Type: SA39974
VMware ESX GCC libtool Search Path Privilege Escalation Security Issue

Source: CCN
Type: SA39975
VMware ESX gzip unlzw() Integer Underflow Vulnerability

Source: CCN
Type: SA39976
VMware vMA OpenSSL CRYPTO_free_all_ex_data() Memory Leak Vulnerability

Source: CCN
Type: SA39977
VMware vMA Multiple krb5 Vulnerabilities

Source: CCN
Type: SA39979
VMware vMA GCC libtool Search Path Privilege Escalation Security Issue

Source: CCN
Type: SA39980
VMware vMA gzip unlzw() Integer Underflow Vulnerability

Source: CCN
Type: SA39981
VMware vMA sudo Privilege Escalation Security Issues

Source: CCN
Type: SECTRACK ID: 1023658
Sudo sudoedit and 'runas_default' Flaws Let Local Users Gain Elevated Privileges

Source: SECTRACK
Type: UNKNOWN
1023658

Source: SLACKWARE
Type: UNKNOWN
SSA:2010-110-01

Source: CCN
Type: sudoedit Bugzilla Bug 389
sudoedit permission in sudoers grants permission to any sudoedit executables

Source: CONFIRM
Type: UNKNOWN
http://sudo.ws/bugs/show_bug.cgi?id=389

Source: CONFIRM
Type: UNKNOWN
http://sudo.ws/repos/sudo/rev/88f3181692fe

Source: CONFIRM
Type: UNKNOWN
http://sudo.ws/repos/sudo/rev/f86e1b56d074

Source: CONFIRM
Type: UNKNOWN
http://wiki.rpath.com/Advisories:rPSA-2010-0075

Source: DEBIAN
Type: UNKNOWN
DSA-2006

Source: DEBIAN
Type: DSA-2006
sudo -- several vulnerabilities

Source: CCN
Type: GLSA-201003-01
sudo: Privilege escalation

Source: GENTOO
Type: UNKNOWN
GLSA-201003-01

Source: MISC
Type: UNKNOWN
http://www.linuxquestions.org/questions/linux-security-4/the-use-of-sudoedit-command-question-785442/

Source: MANDRIVA
Type: UNKNOWN
MDVSA-2010:049

Source: BUGTRAQ
Type: UNKNOWN
20101027 rPSA-2010-0075-1 sudo

Source: BID
Type: Patch
38362

Source: CCN
Type: BID-38362
Todd Miller Sudo 'sudoedit' Local Privilege Escalation Vulnerability

Source: CCN
Type: Sudo Web site
Sudo Main Page

Source: CONFIRM
Type: Patch
http://www.sudo.ws/sudo/stable.html

Source: CCN
Type: USN-905-1
sudo vulnerabilities

Source: UBUNTU
Type: UNKNOWN
USN-905-1

Source: CCN
Type: USN-928-1
Sudo vulnerability

Source: VUPEN
Type: Vendor Advisory
ADV-2010-0450

Source: VUPEN
Type: UNKNOWN
ADV-2010-0949

Source: XF
Type: UNKNOWN
sudo-sudoedit-code-execution(56483)

Source: OVAL
Type: UNKNOWN
oval:org.mitre.oval:def:10814

Source: OVAL
Type: UNKNOWN
oval:org.mitre.oval:def:7238

Source: EXPLOIT-DB
Type: EXPLOIT
Offensive Security Exploit Database [03-07-2010]

Source: SUSE
Type: SUSE-SR:2010:006
SUSE Security Summary Report

Vulnerable Configuration:Configuration 1:
  • cpe:/a:todd_miller:sudo:1.6:*:*:*:*:*:*:*
  • OR cpe:/a:todd_miller:sudo:1.6.1:*:*:*:*:*:*:*
  • OR cpe:/a:todd_miller:sudo:1.6.2:*:*:*:*:*:*:*
  • OR cpe:/a:todd_miller:sudo:1.6.3:*:*:*:*:*:*:*
  • OR cpe:/a:todd_miller:sudo:1.6.3_p1:*:*:*:*:*:*:*
  • OR cpe:/a:todd_miller:sudo:1.6.3_p2:*:*:*:*:*:*:*
  • OR cpe:/a:todd_miller:sudo:1.6.3_p3:*:*:*:*:*:*:*
  • OR cpe:/a:todd_miller:sudo:1.6.3_p4:*:*:*:*:*:*:*
  • OR cpe:/a:todd_miller:sudo:1.6.3_p5:*:*:*:*:*:*:*
  • OR cpe:/a:todd_miller:sudo:1.6.3_p6:*:*:*:*:*:*:*
  • OR cpe:/a:todd_miller:sudo:1.6.3_p7:*:*:*:*:*:*:*
  • OR cpe:/a:todd_miller:sudo:1.6.4_p1:*:*:*:*:*:*:*
  • OR cpe:/a:todd_miller:sudo:1.6.4_p2:*:*:*:*:*:*:*
  • OR cpe:/a:todd_miller:sudo:1.6.5_p1:*:*:*:*:*:*:*
  • OR cpe:/a:todd_miller:sudo:1.6.5_p2:*:*:*:*:*:*:*
  • OR cpe:/a:todd_miller:sudo:1.6.7_p5:*:*:*:*:*:*:*
  • OR cpe:/a:todd_miller:sudo:1.6.8_p1:*:*:*:*:*:*:*
  • OR cpe:/a:todd_miller:sudo:1.6.8_p2:*:*:*:*:*:*:*
  • OR cpe:/a:todd_miller:sudo:1.6.8_p5:*:*:*:*:*:*:*
  • OR cpe:/a:todd_miller:sudo:1.6.8_p7:*:*:*:*:*:*:*
  • OR cpe:/a:todd_miller:sudo:1.6.8_p8:*:*:*:*:*:*:*
  • OR cpe:/a:todd_miller:sudo:1.6.8_p9:*:*:*:*:*:*:*
  • OR cpe:/a:todd_miller:sudo:1.6.8_p12:*:*:*:*:*:*:*
  • OR cpe:/a:todd_miller:sudo:1.6.9_p17:*:*:*:*:*:*:*
  • OR cpe:/a:todd_miller:sudo:1.6.9_p18:*:*:*:*:*:*:*
  • OR cpe:/a:todd_miller:sudo:1.6.9_p19:*:*:*:*:*:*:*
  • OR cpe:/a:todd_miller:sudo:1.7.0:*:*:*:*:*:*:*
  • OR cpe:/a:todd_miller:sudo:1.7.1:*:*:*:*:*:*:*
  • OR cpe:/a:todd_miller:sudo:1.7.2:*:*:*:*:*:*:*
  • OR cpe:/a:todd_miller:sudo:1.7.2p1:*:*:*:*:*:*:*
  • OR cpe:/a:todd_miller:sudo:1.7.2p2:*:*:*:*:*:*:*
  • OR cpe:/a:todd_miller:sudo:1.7.2p3:*:*:*:*:*:*:*

  • Configuration RedHat 1:
  • cpe:/o:redhat:enterprise_linux:5:*:*:*:*:*:*:*

  • Configuration RedHat 2:
  • cpe:/o:redhat:enterprise_linux:5::client:*:*:*:*:*

  • Configuration RedHat 3:
  • cpe:/o:redhat:enterprise_linux:5::server:*:*:*:*:*

  • * Denotes that component is vulnerable
    Oval Definitions
    Definition IDClassTitleLast Modified
    oval:org.opensuse.security:def:20100426
    V
    CVE-2010-0426
    2022-05-20
    oval:org.opensuse.security:def:31721
    P
    Security update for log4j (Important)
    2021-12-17
    oval:org.opensuse.security:def:31326
    P
    Security update for the Linux Kernel (Live Patch 39 for SLE 12 SP3) (Important)
    2021-12-14
    oval:org.opensuse.security:def:32242
    P
    Security update for the Linux Kernel (Live Patch 39 for SLE 12 SP3) (Important)
    2021-12-14
    oval:org.opensuse.security:def:31718
    P
    Security update for MozillaFirefox (Important)
    2021-12-12
    oval:org.opensuse.security:def:32218
    P
    Security update for the Linux Kernel (Live Patch 36 for SLE 12 SP3) (Important)
    2021-11-19
    oval:org.opensuse.security:def:31304
    P
    Security update for the Linux Kernel (Live Patch 38 for SLE 12 SP3) (Important)
    2021-11-19
    oval:org.opensuse.security:def:32220
    P
    Security update for the Linux Kernel (Live Patch 38 for SLE 12 SP3) (Important)
    2021-11-19
    oval:org.opensuse.security:def:26163
    P
    Security update for bind (Important)
    2021-11-11
    oval:org.opensuse.security:def:42232
    P
    Security update for pcre (Moderate)
    2021-10-27
    oval:org.opensuse.security:def:31293
    P
    Security update for postgresql10 (Important)
    2021-10-20
    oval:org.opensuse.security:def:26151
    P
    Security update for python3 (Moderate)
    2021-10-20
    oval:org.opensuse.security:def:31292
    P
    Security update for strongswan (Important)
    2021-10-19
    oval:org.opensuse.security:def:26134
    P
    Security update for the Linux Kernel (Important)
    2021-09-23
    oval:org.opensuse.security:def:33000
    P
    Security update for java-1_7_0-openjdk (Moderate)
    2021-09-09
    oval:org.opensuse.security:def:32169
    P
    Security update for the Linux Kernel (Live Patch 34 for SLE 12 SP3) (Important)
    2021-08-25
    oval:org.opensuse.security:def:26107
    P
    Security update for openssl-1_0_0 (Important)
    2021-08-24
    oval:org.opensuse.security:def:31659
    P
    Security update for qemu (Important)
    2021-07-29
    oval:org.opensuse.security:def:26093
    P
    Security update for dbus-1 (Important)
    2021-07-21
    oval:org.opensuse.security:def:32961
    P
    Security update for kernel-source (Important)
    2021-07-01
    oval:org.opensuse.security:def:32133
    P
    Security update for libgcrypt (Important)
    2021-06-24
    oval:org.opensuse.security:def:32112
    P
    Security update for libX11 (Important)
    2021-06-08
    oval:org.opensuse.security:def:32113
    P
    Security update for qemu (Important)
    2021-06-08
    oval:org.opensuse.security:def:31194
    P
    Security update for qemu (Important)
    2021-06-08
    oval:org.opensuse.security:def:36300
    P
    sudo-1.7.6p2-0.23.1 on GA media (Moderate)
    2021-06-08
    oval:org.opensuse.security:def:42707
    P
    sudo-1.7.6p2-0.23.1 on GA media (Moderate)
    2021-06-08
    oval:org.opensuse.security:def:32108
    P
    Security update for the Linux Kernel (Live Patch 38 for SLE 12 SP3) (Important)
    2021-06-04
    oval:org.opensuse.security:def:26053
    P
    Security update for libxml2 (Important)
    2021-05-19
    oval:org.opensuse.security:def:32076
    P
    Security update for the Linux Kernel (Live Patch 34 for SLE 12 SP3) (Important)
    2021-04-28
    oval:org.opensuse.security:def:32068
    P
    Security update for spamassassin (Important)
    2021-04-12
    oval:org.opensuse.security:def:26216
    P
    Security update for MozillaFirefox (Important)
    2021-03-31
    oval:org.opensuse.security:def:31746
    P
    Security update for wavpack (Important)
    2021-03-24
    oval:org.opensuse.security:def:32279
    P
    Security update for the Linux Kernel (Live Patch 33 for SLE 12 SP3) (Important)
    2021-03-17
    oval:org.opensuse.security:def:29470
    P
    Security update for screen (Important)
    2021-02-17
    oval:org.opensuse.security:def:26191
    P
    Security update for jasper (Important)
    2021-02-16
    oval:org.opensuse.security:def:32257
    P
    Security update for jasper (Important)
    2021-02-16
    oval:org.opensuse.security:def:29434
    P
    Security update for python3 (Important)
    2021-02-08
    oval:org.opensuse.security:def:26054
    P
    Security update for flac (Moderate)
    2021-01-04
    oval:org.opensuse.security:def:32022
    P
    Security update for xen (Moderate)
    2020-12-29
    oval:org.opensuse.security:def:31562
    P
    Security update for xen (Important)
    2020-12-07
    oval:org.opensuse.security:def:32007
    P
    Security update for the Linux Kernel (Live Patch 30 for SLE 12 SP3) (Important)
    2020-12-07
    oval:org.opensuse.security:def:42047
    P
    sudo-1.6.9p17-21.3.1 on GA media (Moderate)
    2020-12-03
    oval:org.opensuse.security:def:35825
    P
    sudo-1.7.6p2-0.2.4.1 on GA media (Moderate)
    2020-12-03
    oval:org.opensuse.security:def:36037
    P
    sudo-1.7.6p2-0.17.5 on GA media (Moderate)
    2020-12-03
    oval:org.opensuse.security:def:42444
    P
    sudo-1.7.6p2-0.17.5 on GA media (Moderate)
    2020-12-03
    oval:org.opensuse.security:def:35640
    P
    sudo-1.6.9p17-21.3.1 on GA media (Moderate)
    2020-12-03
    oval:org.opensuse.security:def:25967
    P
    Security update for python3 (Important)
    2020-12-02
    oval:org.opensuse.security:def:25376
    P
    Security update for dovecot22 (Important)
    2020-12-01
    oval:org.opensuse.security:def:32845
    P
    cyrus-imapd on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:28012
    P
    Security update for apache2 (Important)
    2020-12-01
    oval:org.opensuse.security:def:31378
    P
    Security update for openssl1 (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:25870
    P
    Security update for the Linux Kernel (Important)
    2020-12-01
    oval:org.opensuse.security:def:26362
    P
    Security update for nginx (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:32034
    P
    Security update for the Linux Kernel (Important)
    2020-12-01
    oval:org.opensuse.security:def:25717
    P
    Security update for gd (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:26479
    P
    Security update for chromium (Important)
    2020-12-01
    oval:org.opensuse.security:def:31884
    P
    Security update for dosfstools (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:25598
    P
    Security update for curl (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:28302
    P
    Security update for libtasn1 (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:31902
    P
    Security update for MozillaFirefox, mozilla-nss (Important)
    2020-12-01
    oval:org.opensuse.security:def:32520
    P
    glib2 on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:26640
    P
    sudo on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:31109
    P
    Security update for the Linux Kernel (Important)
    2020-12-01
    oval:org.opensuse.security:def:32479
    P
    LibVNCServer on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:27263
    P
    perl-32bit on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:31766
    P
    Security update for MozillaFirefox (Important)
    2020-12-01
    oval:org.opensuse.security:def:25395
    P
    Security update for xen (Important)
    2020-12-01
    oval:org.opensuse.security:def:26012
    P
    Security update for mariadb (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:28697
    P
    Security update for glibc (Important)
    2020-12-01
    oval:org.opensuse.security:def:25375
    P
    Security update for webkit2gtk3 (Important)
    2020-12-01
    oval:org.opensuse.security:def:25925
    P
    Security update for pcre (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:31475
    P
    Security update for procps (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:32801
    P
    unzip on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:25821
    P
    Security update for lhasa (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:26318
    P
    Security update for MozillaThunderbird (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:32023
    P
    Security update for the Linux Kernel (Important)
    2020-12-01
    oval:org.opensuse.security:def:25660
    P
    Security update for sane-backends (Important)
    2020-12-01
    oval:org.opensuse.security:def:26426
    P
    Security update for singularity (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:31862
    P
    Security update for curl (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:25587
    P
    Security update for perl-PlRPC (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:28218
    P
    Recommended update for LibreOffice (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:32481
    P
    NetworkManager on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:26605
    P
    libtiff3 on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:31108
    P
    Security update for the Linux Kernel (Important)
    2020-12-01
    oval:org.opensuse.security:def:31589
    P
    Security update for tiff (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:32392
    P
    Security update for tomcat6 (Important)
    2020-12-01
    oval:org.opensuse.security:def:26625
    P
    pam_ldap on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:25267
    P
    Security update for exiv2 (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:25928
    P
    Security update for pcre (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:28648
    P
    Security update for cpio
    2020-12-01
    oval:org.opensuse.security:def:33263
    P
    sudo on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:25861
    P
    Security update for the Linux Kernel (Important)
    2020-12-01
    oval:org.opensuse.security:def:31418
    P
    Security update for php53 (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:32779
    P
    qt3 on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:26824
    P
    sudo on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:31984
    P
    Security update for java-1_7_1-ibm (Important)
    2020-12-01
    oval:org.opensuse.security:def:25768
    P
    Security update for flash-player (Important)
    2020-12-01
    oval:org.opensuse.security:def:26304
    P
    Security update for python-keystoneclient (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:25579
    P
    Security update for xen (Important)
    2020-12-01
    oval:org.opensuse.security:def:26275
    P
    Security update for freerdp (Important)
    2020-12-01
    oval:org.opensuse.security:def:31823
    P
    Security update for bash (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:32323
    P
    Security update for samba (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:25586
    P
    Security update for libvirt (Important)
    2020-12-01
    oval:org.opensuse.security:def:28088
    P
    Security update for ghostscript-library (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:32432
    P
    Security update for xen (Important)
    2020-12-01
    oval:org.opensuse.security:def:31515
    P
    Security update for quagga (Low)
    2020-12-01
    oval:org.opensuse.security:def:32335
    P
    Security update for samba (Important)
    2020-12-01
    oval:org.opensuse.security:def:26005
    P
    Security update for libcdio (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:26581
    P
    libadns1 on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:32605
    P
    sudo on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:25203
    P
    Security update for mariadb (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:25871
    P
    Security update for gd (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:28595
    P
    Security update for PostgreSQL
    2020-12-01
    oval:org.opensuse.security:def:32046
    P
    Security update for krb5 (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:33224
    P
    pam_mount on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:25850
    P
    Security update for libreoffice (Low)
    2020-12-01
    oval:org.opensuse.security:def:31957
    P
    Security update for gdk2 (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:32740
    P
    libxslt on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:26789
    P
    ntp on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:31852
    P
    Recommended udpate for SUSE Manager Client Tools (Low)
    2020-12-01
    oval:org.opensuse.security:def:25617
    P
    Security update for jasper (Low)
    2020-12-01
    oval:org.opensuse.security:def:26265
    P
    Security update for guile (Low)
    2020-12-01
    oval:org.opensuse.security:def:28796
    P
    Security update for openldap2
    2020-12-01
    oval:org.opensuse.security:def:25451
    P
    Security update for gdb (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:31774
    P
    Security update for MozillaFirefox (Important)
    2020-12-01
    oval:org.opensuse.security:def:33522
    P
    Security update for sudo
    2020-12-01
    oval:org.opensuse.security:def:28024
    P
    Security update for bind (Important)
    2020-12-01
    oval:org.opensuse.security:def:31602
    P
    Security update for tomcat6
    2020-12-01
    oval:org.opensuse.security:def:32376
    P
    Security update for tiff (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:25923
    P
    Security update for util-linux (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:27035
    P
    sudo on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:31504
    P
    Security update for python27 (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:25952
    P
    Security update for the Linux Kernel (Important)
    2020-12-01
    oval:org.opensuse.security:def:26567
    P
    java-1_4_2-ibm on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:32566
    P
    libsamplerate on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:25192
    P
    Security update for the Linux Kernel (Important)
    2020-12-01
    oval:org.opensuse.security:def:25790
    P
    Security update for flash-player (Important)
    2020-12-01
    oval:org.opensuse.security:def:28443
    P
    Security update for xen (Important)
    2020-12-01
    oval:org.opensuse.security:def:32586
    P
    openswan on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:25849
    P
    Security update for mariadb (Important)
    2020-12-01
    oval:org.opensuse.security:def:31870
    P
    Security update for curl (Important)
    2020-12-01
    oval:org.opensuse.security:def:32691
    P
    kdelibs4 on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:31778
    P
    Security update for MozillaFirefox (Important)
    2020-12-01
    oval:org.opensuse.security:def:25533
    P
    Security update for ed (Low)
    2020-12-01
    oval:org.opensuse.security:def:28752
    P
    Security update for libmspack (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:32789
    P
    sudo on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:25387
    P
    Security update for shim (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:33483
    P
    Security update for OpenSSL
    2020-12-01
    oval:org.opensuse.security:def:28013
    P
    Security update for apache2-mod_fcgid (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:31510
    P
    Security update for libX11 (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:25909
    P
    Security update for flash-player (Important)
    2020-12-01
    oval:org.opensuse.security:def:27000
    P
    openslp on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:31503
    P
    Security update for python27 (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:25801
    P
    Security update for libvdpau (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:26528
    P
    bzip2 on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:31928
    P
    Security update for giflib (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:25191
    P
    Security update for the Linux Kernel (Important)
    2020-12-01
    oval:org.opensuse.security:def:25662
    P
    Security update for apache-commons-httpclient (Important)
    2020-12-01
    oval:org.opensuse.security:def:28359
    P
    Security update for postgresql94 (Important)
    2020-12-01
    oval:org.opensuse.security:def:31958
    P
    Security update for gtk2 (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:32542
    P
    kvm on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:31120
    P
    Security update for krb5
    2020-12-01
    oval:org.opensuse.security:def:31813
    P
    Security update for apache2-mod_jk (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:32635
    P
    apache2-mod_php5 on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:27298
    P
    sudo on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:31767
    P
    Security update for MozillaFirefox (Important)
    2020-12-01
    oval:org.opensuse.security:def:25476
    P
    Security update for git (Important)
    2020-12-01
    oval:org.opensuse.security:def:28736
    P
    Security update for lcms
    2020-12-01
    oval:org.opensuse.security:def:32750
    P
    mozilla-xulrunner192 on GA media (Moderate)
    2020-12-01
    oval:org.mitre.oval:def:12380
    P
    USN-905-1 -- sudo vulnerabilities
    2014-06-30
    oval:org.mitre.oval:def:13334
    P
    USN-928-1 -- sudo vulnerability
    2014-06-30
    oval:org.mitre.oval:def:18169
    P
    DSA-2006-1 sudo - several vulnerabilities
    2014-06-23
    oval:org.mitre.oval:def:23056
    P
    ELSA-2010:0122: sudo security update (Important)
    2014-05-26
    oval:org.mitre.oval:def:22119
    P
    RHSA-2010:0122: sudo security update (Important)
    2014-02-24
    oval:org.mitre.oval:def:7238
    V
    Sudo 'sudoedit' Local Privilege Escalation Vulnerability
    2014-01-20
    oval:org.mitre.oval:def:10814
    V
    sudo 1.6.x before 1.6.9p21 and 1.7.x before 1.7.2p4, when a pseudo-command is enabled, permits a match between the name of the pseudo-command and the name of an executable file in an arbitrary directory, which allows local users to gain privileges via a crafted executable file, as demonstrated by a file named sudoedit in a user's home directory.
    2013-04-29
    oval:org.debian:def:2006
    V
    several vulnerabilities
    2010-03-02
    oval:com.redhat.rhsa:def:20100122
    P
    RHSA-2010:0122: sudo security update (Important)
    2010-02-26
    BACK
    todd_miller sudo 1.6
    todd_miller sudo 1.6.1
    todd_miller sudo 1.6.2
    todd_miller sudo 1.6.3
    todd_miller sudo 1.6.3_p1
    todd_miller sudo 1.6.3_p2
    todd_miller sudo 1.6.3_p3
    todd_miller sudo 1.6.3_p4
    todd_miller sudo 1.6.3_p5
    todd_miller sudo 1.6.3_p6
    todd_miller sudo 1.6.3_p7
    todd_miller sudo 1.6.4_p1
    todd_miller sudo 1.6.4_p2
    todd_miller sudo 1.6.5_p1
    todd_miller sudo 1.6.5_p2
    todd_miller sudo 1.6.7_p5
    todd_miller sudo 1.6.8_p1
    todd_miller sudo 1.6.8_p2
    todd_miller sudo 1.6.8_p5
    todd_miller sudo 1.6.8_p7
    todd_miller sudo 1.6.8_p8
    todd_miller sudo 1.6.8_p9
    todd_miller sudo 1.6.8_p12
    todd_miller sudo 1.6.9_p17
    todd_miller sudo 1.6.9_p18
    todd_miller sudo 1.6.9_p19
    todd_miller sudo 1.7.0
    todd_miller sudo 1.7.1
    todd_miller sudo 1.7.2
    todd_miller sudo 1.7.2p1
    todd_miller sudo 1.7.2p2
    todd_miller sudo 1.7.2p3