Svi
Pretraži prema proizvođaču
Pretraži prema CWE oznaci
O usluzi
Pretplate
Jezik
hr
en
CVE-2023-27320 - CERT CVE
CVE-2023-27320
ID
CVE-2023-27320
Sažetak
Sudo before 1.9.13p2 has a double free in the per-command chroot feature.
Reference
http://www.openwall.com/lists/oss-security/2023/03/01/8
https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/332KN4QI6QXB7NI7SWSJ2EQJKWIILFN6/
https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/FPLXMRAMXC3BYL4DNKVTK3V6JDMUXZ7B/
https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/X6VW24YGXJYI4NZ5HZPQCF4MCE7766AU/
https://security.gentoo.org/glsa/202309-12
https://security.netapp.com/advisory/ntap-20230413-0009/
https://www.openwall.com/lists/oss-security/2023/02/28/1
https://www.sudo.ws/releases/stable/#1.9.13p2
http://www.openwall.com/lists/oss-security/2023/03/01/8
https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/332KN4QI6QXB7NI7SWSJ2EQJKWIILFN6/
https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/FPLXMRAMXC3BYL4DNKVTK3V6JDMUXZ7B/
https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/X6VW24YGXJYI4NZ5HZPQCF4MCE7766AU/
https://security.gentoo.org/glsa/202309-12
https://security.netapp.com/advisory/ntap-20230413-0009/
https://www.openwall.com/lists/oss-security/2023/02/28/1
https://www.sudo.ws/releases/stable/#1.9.13p2
CVSS
Base:
7.2
Impact:
5.9
Exploitability:
1.2
Pristup
Vektor
Složenost
Autentikacija
NETWORK
LOW
HIGH
Impact
Povjerljivost
Cjelovitost
Dostupnost
HIGH
HIGH
HIGH
CVSS vektor
CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H
Zadnje važnije ažuriranje
21-03-2025 - 21:15
Objavljeno
28-02-2023 - 18:15