CVE-2009-0034
parse.c in sudo 1.6.9p17 through 1.6.9p19 does not properly interpret a system group (aka %group) in the sudoers file during authorization decisions for a user who belongs to that group, which allows local users to leverage an applicable sudoers file…
Does this matter?
High impact if exploited, but EPSS currently rates exploitation as unlikely (0.41%). Schedule it in the normal patch cycle and watch for a rise in EPSS or a public exploit.
Description
parse.c in sudo 1.6.9p17 through 1.6.9p19 does not properly interpret a system group (aka %group) in the sudoers file during authorization decisions for a user who belongs to that group, which allows local users to leverage an applicable sudoers file and gain root privileges via a sudo command.
- CVSS 3.1
- 7.8 HIGHCVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
- EPSS
- 0.41% probability · 34th percentile
- CISA KEV
- Not listed
- Weakness
- CWE-863
- Affected
- gratisoft/sudo · vmware/esx
- Source
- secalert@redhat.com
References
- http://lists.vmware.com/pipermail/security-announce/2009/000060.htmlBroken Link
- http://osvdb.org/51736Broken Link
- http://secunia.com/advisories/33753Not Applicable
- http://secunia.com/advisories/33840Not Applicable
- http://secunia.com/advisories/33885Not Applicable
- http://secunia.com/advisories/35766Not Applicable
- http://wiki.rpath.com/Advisories:rPSA-2009-0021Broken Link
- http://www.gratisoft.us/bugzilla/show_bug.cgi?id=327Product, Release Notes
- http://www.mandriva.com/security/advisories?name=MDVSA-2009:033Broken Link
- http://www.redhat.com/support/errata/RHSA-2009-0267.htmlNot Applicable
- http://www.securityfocus.com/archive/1/500546/100/0/threadedBroken Link, Third Party Advisory, VDB Entry
- http://www.securityfocus.com/archive/1/504849/100/0/threadedBroken Link, Third Party Advisory, VDB Entry
- http://www.securityfocus.com/bid/33517Broken Link, Third Party Advisory, VDB Entry
- http://www.securitytracker.com/id?1021688Broken Link, Third Party Advisory, VDB Entry
- http://www.sudo.ws/cgi-bin/cvsweb/sudo/parse.c.diff?r1=1.160.2.21&r2=1.160.2.22&f=hBroken Link
- http://www.vmware.com/security/advisories/VMSA-2009-0009.htmlThird Party Advisory
- http://www.vupen.com/english/advisories/2009/1865Permissions Required
- https://bugzilla.novell.com/show_bug.cgi?id=468923Issue Tracking, Permissions Required
- https://issues.rpath.com/browse/RPL-2954Broken Link
- https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A10856Broken Link
- https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A6462Broken Link
- http://lists.vmware.com/pipermail/security-announce/2009/000060.htmlBroken Link
- http://osvdb.org/51736Broken Link
- http://secunia.com/advisories/33753Not Applicable
- http://secunia.com/advisories/33840Not Applicable
- http://secunia.com/advisories/33885Not Applicable
- http://secunia.com/advisories/35766Not Applicable
- http://wiki.rpath.com/Advisories:rPSA-2009-0021Broken Link
- http://www.gratisoft.us/bugzilla/show_bug.cgi?id=327Product, Release Notes
- http://www.mandriva.com/security/advisories?name=MDVSA-2009:033Broken Link
Source: NVD record, EPSS from FIRST.org, KEV from CISA. Refreshed daily.