CVE-2012-2337
18.05.2012, 18:55
sudo 1.6.x and 1.7.x before 1.7.9p1, and 1.8.x before 1.8.4p5, does not properly support configurations that use a netmask syntax, which allows local users to bypass intended command restrictions in opportunistic circumstances by executing a command on a host that has an IPv4 address.Enginsight
Vendor | Product | Version |
---|---|---|
todd_miller | sudo | 1.6 |
todd_miller | sudo | 1.6.1 |
todd_miller | sudo | 1.6.2 |
todd_miller | sudo | 1.6.2p3:p3 |
todd_miller | sudo | 1.6.3 |
todd_miller | sudo | 1.6.3_p7:_p7 |
todd_miller | sudo | 1.6.4 |
todd_miller | sudo | 1.6.4p2:p2 |
todd_miller | sudo | 1.6.5 |
todd_miller | sudo | 1.6.6 |
todd_miller | sudo | 1.6.7 |
todd_miller | sudo | 1.6.7p5:p5 |
todd_miller | sudo | 1.6.8 |
todd_miller | sudo | 1.6.8p12:p12 |
todd_miller | sudo | 1.6.9 |
todd_miller | sudo | 1.6.9p20:p20 |
todd_miller | sudo | 1.6.9p21:p21 |
todd_miller | sudo | 1.6.9p22:p22 |
todd_miller | sudo | 1.6.9p23:p23 |
𝑥
= Vulnerable software versions

Debian Releases

Ubuntu Releases
Common Weakness Enumeration
References