CVE-2017-1000368
05.06.2017, 16:29
Todd Miller's sudo version 1.8.20p1 and earlier is vulnerable to an input validation (embedded newlines) in the get_process_ttyname() function resulting in information disclosure and command execution.Enginsight
| Vendor | Product | Version |
|---|---|---|
| sudo_project | sudo | 𝑥 ≤ 1.8.20 |
| sudo_project | sudo | 1.8.20:p1 |
𝑥
= Vulnerable software versions
Debian Releases
Ubuntu Releases
Common Weakness Enumeration
References