CVE-2010-1163
16.04.2010, 19:30
The command matching functionality in sudo 1.6.8 through 1.7.2p5 does not properly handle when a file in the current working directory has the same name as a pseudo-command in the sudoers file and the PATH contains an entry for ".", which allows local users to execute arbitrary commands via a Trojan horse executable, as demonstrated using sudoedit, a different vulnerability than CVE-2010-0426.Enginsight
Vendor | Product | Version |
---|---|---|
todd_miller | sudo | 1.6.8 |
todd_miller | sudo | 1.6.8_p1:_p1 |
todd_miller | sudo | 1.6.8_p2:_p2 |
todd_miller | sudo | 1.6.8_p5:_p5 |
todd_miller | sudo | 1.6.8_p7:_p7 |
todd_miller | sudo | 1.6.8_p8:_p8 |
todd_miller | sudo | 1.6.8_p9:_p9 |
todd_miller | sudo | 1.6.8_p12:_p12 |
todd_miller | sudo | 1.6.8p7:p7 |
todd_miller | sudo | 1.6.9_p17:_p17 |
todd_miller | sudo | 1.6.9_p18:_p18 |
todd_miller | sudo | 1.6.9_p19:_p19 |
todd_miller | sudo | 1.6.9_p20:_p20 |
todd_miller | sudo | 1.6.9_p21:_p21 |
todd_miller | sudo | 1.6.9_p22:_p22 |
todd_miller | sudo | 1.7.0 |
todd_miller | sudo | 1.7.1 |
todd_miller | sudo | 1.7.2p1:p1 |
todd_miller | sudo | 1.7.2p2:p2 |
todd_miller | sudo | 1.7.2p3:p3 |
todd_miller | sudo | 1.7.2p4:p4 |
𝑥
= Vulnerable software versions

Debian Releases

Ubuntu Releases
Common Weakness Enumeration
References