← Back

CVE-2006-0151

nvd nist
Published: Jan 9, 2006Modified: Apr 16, 2026

JSON object

Loading...
7.2
Vector
AV:L/AC:L/Au:N/C:C/I:C/A:C
Exploitability: 3.9 / Impact: 10.0
Source: NVD

Description

sudo 1.6.8 and other versions does not clear the PYTHONINSPECT environment variable, which allows limited local users to gain privileges via a Python script, a variant of CVE-2005-4158.

Affected (40)

1 product
Sudo
1 product
Ubuntu Linux
Configuration A
32 vulnerable
Vulnerable SoftwareAffected Versions
Todd Miller
Version 1.5.6
Version 1.5.7
Version 1.5.8
Version 1.5.9
Version 1.6.1
Version 1.6.2
Version 1.6.3
Version 1.6.3_p1
Version 1.6.3_p2
Version 1.6.3_p3
Version 1.6.3_p4
Version 1.6.3_p5
Version 1.6.3_p6
Version 1.6.3_p7
Version 1.6.4
Version 1.6.4_p1
Version 1.6.4_p2
Version 1.6.5
Version 1.6.5_p1
Version 1.6.5_p2
Version 1.6.6
Version 1.6.7
Version 1.6.7_p5
Version 1.6.8
Version 1.6.8_p12
Version 1.6.8_p1
Version 1.6.8_p2
Version 1.6.8_p5
Version 1.6.8_p7
Version 1.6.8_p8
Version 1.6.8_p9
Version 1.6
Configuration B
8 vulnerable
Vulnerable SoftwareAffected Versions
Ubuntu
Version 4.1
Version 4.1
Version 5.04
Version 5.04
Version 5.04
Version 5.10
Version 5.10
Version 5.10

References (28)

Source: cve@mitre.org
Vendor Advisory
Source: cve@mitre.org
PatchVendor Advisory
Source: cve@mitre.org
Exploit
Source: cve@mitre.org
Source: af854a3a-2127-422b-91ae-364da2661108
Vendor Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
PatchVendor Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108
Exploit
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108

Timeline

No history available yet.