Alerts This Week
Warning Icon 1 619
Alerts This Week
Warning Icon 1 619

Debian DSA-4614-1 Moderate: Sudo Buffer Overflow Security Threat

debian
Calendar Grey February 1, 2020
Debian Logo
Debian Security Notice DSA-4615-2 addresses a critical vulnerability in the libxml2 library identified by Anna Smith.
Joe Vennix discovered a stack-based buffer overflow vulnerability in sudo, a program designed to provide limited super user privileges to specific users, triggerable when configure...

Summary

Details can be found in the upstream advisory at
.

For the oldstable distribution (stretch), this problem has been fixed
in version 1.8.19p1-2.1+deb9u2.

For the stable distribution (buster), exploitation of the bug is
prevented due to a change in EOF handling introduced in 1.8.26.

We recommend that you upgrade your sudo packages.

For the detailed security status of sudo please refer to its security
tracker page at:
https://security-tracker.debian.org/tracker/source-package/sudo

Further information about Debian Security Advisories, how to apply
these updates to your system and frequently asked questions can be
found at: https://www.debian.org/security/



Package: sudo
CVE ID: CVE-2019-18634

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Related News

Your message here