VulnerabilityModified
CVE-2005-2959
Incomplete blacklist vulnerability in sudo 1.6.8 and earlier allows local users to gain privileges via the (1) SHELLOPTS and (2) PS4 environment variables before executing a bash script on behalf of another user, which are not cleared even though other…
MEDIUM 4.6EPSS 0.62%
Does this matter?
Lower severity and a low EPSS score (0.62%). Track it; it rarely justifies an emergency change on its own.
Description
Incomplete blacklist vulnerability in sudo 1.6.8 and earlier allows local users to gain privileges via the (1) SHELLOPTS and (2) PS4 environment variables before executing a bash script on behalf of another user, which are not cleared even though other variables are.
- CVSS 2.0
- 4.6 MEDIUMAV:L/AC:L/Au:N/C:P/I:P/A:P
- EPSS
- 0.62% probability · 48th percentile
- CISA KEV
- Not listed
- Weakness
- CWE-264
- Affected
- todd miller/sudo
- Source
- security@debian.org
References
- http://docs.info.apple.com/article.html?artnum=305214
- http://lists.apple.com/archives/security-announce/2007/Mar/msg00002.html
- http://secunia.com/advisories/17318Vendor Advisory
- http://secunia.com/advisories/17322Vendor Advisory
- http://secunia.com/advisories/17345Vendor Advisory
- http://secunia.com/advisories/17390Patch, Vendor Advisory
- http://secunia.com/advisories/17666Vendor Advisory
- http://secunia.com/advisories/18549Vendor Advisory
- http://secunia.com/advisories/24479Vendor Advisory
- http://www.debian.org/security/2005/dsa-870Patch, Vendor Advisory
- http://www.mandriva.com/security/advisories?name=MDKSA-2005:201
- http://www.novell.com/linux/security/advisories/2006_02_sr.html
- http://www.openpkg.org/security/OpenPKG-SA-2006.002-sudo.html
- http://www.securityfocus.com/advisories/9643Vendor Advisory
- http://www.securityfocus.com/bid/15191Exploit
- http://www.sudo.ws/bugs/show_bug.cgi?id=182
- http://www.us-cert.gov/cas/techalerts/TA07-072A.htmlUS Government Resource
- http://www.vupen.com/english/advisories/2007/0930Vendor Advisory
- https://usn.ubuntu.com/213-1/
- http://docs.info.apple.com/article.html?artnum=305214
- http://lists.apple.com/archives/security-announce/2007/Mar/msg00002.html
- http://secunia.com/advisories/17318Vendor Advisory
- http://secunia.com/advisories/17322Vendor Advisory
- http://secunia.com/advisories/17345Vendor Advisory
- http://secunia.com/advisories/17390Patch, Vendor Advisory
- http://secunia.com/advisories/17666Vendor Advisory
- http://secunia.com/advisories/18549Vendor Advisory
- http://secunia.com/advisories/24479Vendor Advisory
- http://www.debian.org/security/2005/dsa-870Patch, Vendor Advisory
- http://www.mandriva.com/security/advisories?name=MDKSA-2005:201
Source: NVD record, EPSS from FIRST.org, KEV from CISA. Refreshed daily.