Alerts This Week
Warning Icon 1 646
Alerts This Week
Warning Icon 1 646

Oracle Linux 9 ELSA-2024-0811 Moderate: Sudo Control Character Update

oracle
Calendar Grey February 16, 2024
Oracle Linux Logo Esm H88
Oracle Linux Security Notice regarding sudo highlights crucial vulnerabilities related to control characters and stack corruption. Discover further details!
The following updated rpms for Oracle Linux 9 have been uploaded to the Unbreakable Linux Network:

Summary

RHEL 9.3.0.Z ERRATUM [1.9.5p2-10] - CVE-2023-28487 sudo: Sudo does not escape control characters in sudoreplay output Resolves: RHEL-21834 - CVE-2023-28486 sudo: Sudo does not escape control characters in log messages Resolves: RHEL-21828 - CVE-2023-42465 sudo: Targeted Corruption of Register and Stack Variables Resolves: RHEL-21821 RHEL 8.9.0.Z ERRATUM [1.9.5p2-1] - Rebase to 1.9.5p2 - CVE-2023-28486 sudo: Sudo does not escape control characters in log messages Resolves: RHEL-21825 - CVE-2023-28487 sudo: Sudo does not escape control characters in sudoreplay output Resolves: RHEL-21831 - CVE-2023-42465 sudo: Targeted Corruption of Register and Stack Variables Resolves: RHEL-21820

SRPMs

https://oss.oracle.com:443/ol9/SRPMS-updates//sudo-1.9.5p2-10.el9_3.src.rpm

x86_64

sudo-1.9.5p2-10.el9_3.x86_64.rpm sudo-python-plugin-1.9.5p2-10.el9_3.x86_64.rpm

aarch64

sudo-1.9.5p2-10.el9_3.aarch64.rpm sudo-python-plugin-1.9.5p2-10.el9_3.aarch64.rpm

Related CVEs: CVE-2023-28486 CVE-2023-28487 CVE-2023-42465

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Related News

Your message here