Alerts This Week
Warning Icon 1 714
Alerts This Week
Warning Icon 1 714

Fedora 43: Critical Auth Breach Patch 2025-b1a1234xyz for sudo-google

fedora
Calendar Grey November 26, 2025
Dist Fedora Esm H88
Fedora 43 updates sudo-rs to fix critical issues including authentication bypass and partial password reveal.
Update to version 0.2.10

Summary

A memory safe implementation of sudo and su.

Update Information:

Update to version 0.2.10. This release includes fixes for CVE-2025-64170 and CVE-2025-64517.

Change Log

* Mon Nov 17 2025 Fabio Valentini - 0.2.10-1 - Update to version 0.2.10; Fixes RHBZ#2413768

References


[ 1 ] Bug #2414750 - CVE-2025-64170 sudo-rs: sudo-rs: Partial password reveal is possible after timeout [fedora-43] https://bugzilla.redhat.com/show_bug.cgi?id=2414750 [ 2 ] Bug #2414778 - CVE-2025-64517 sudo-rs: Authentication bypass in timestamp [fedora-43] https://bugzilla.redhat.com/show_bug.cgi?id=2414778

Update Instructions

This update can be installed with the "dnf" update program. Use su -c 'dnf upgrade --advisory FEDORA-2025-a9d9780cbb' at the command line. For more information, refer to the dnf documentation available at http://dnf.readthedocs.io/en/latest/command_ref.html#upgrade-command-label

Severity
important
Lowest
Low
Medium
High
Critical

Name: sudo-rs
Product: Fedora 43
Version: 0.2.10
Release: 1.fc43
Summary: Memory safe implementation of sudo and su

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Your message here