← Back

CVE-2011-0008

nvd nist
Published: Jan 20, 2011Modified: Apr 29, 2026

JSON object

Loading...
6.9
Vector
AV:L/AC:M/Au:N/C:C/I:C/A:C
Exploitability: 3.4 / Impact: 10.0
Source: NVD

Description

A certain Fedora patch for parse.c in sudo before 1.7.4p5-1.fc14 on Fedora 14 does not properly interpret a system group (aka %group) in the sudoers file during authorization decisions for a user who belongs to that group, which allows local users to leverage an applicable sudoers file and gain root privileges via a sudo command. NOTE: this vulnerability exists because of a CVE-2009-0034 regression.

Affected (114)

Products: Todd Miller: Sudo
1 product
Sudo
Configuration A
114 vulnerable · 1 platform
Vulnerable SoftwareAffected Versions
Todd Miller
Up to 1.7.4p5
Version 1.3.1
Version 1.5.2
Version 1.5.3
Version 1.5.6
Version 1.5.7
Version 1.5.8
Version 1.5.9
Version 1.5
Version 1.6.1
Version 1.6.2
Version 1.6.2p1
Version 1.6.2p2
Version 1.6.2p3
Version 1.6.3
Version 1.6.3_p1
Version 1.6.3_p2
Version 1.6.3_p3
Version 1.6.3_p4
Version 1.6.3_p5
Version 1.6.3_p6
Version 1.6.3_p7
Version 1.6.3p1
Version 1.6.3p2
Version 1.6.3p3
Version 1.6.3p4
Version 1.6.3p5
Version 1.6.3p6
Version 1.6.3p7
Version 1.6.4
Version 1.6.4_p1
Version 1.6.4_p2
Version 1.6.4p1
Version 1.6.4p2
Version 1.6.5
Version 1.6.5_p1
Version 1.6.5_p2
Version 1.6.5p1
Version 1.6.5p2
Version 1.6.6
Version 1.6.7
Version 1.6.7_p5
Version 1.6.7p1
Version 1.6.7p2
Version 1.6.7p3
Version 1.6.7p4
Version 1.6.7p5
Version 1.6.8
Version 1.6.8_p12
Version 1.6.8_p1
Version 1.6.8_p2
Version 1.6.8_p5
Version 1.6.8_p7
Version 1.6.8_p8
Version 1.6.8_p9
Version 1.6.8p10
Version 1.6.8p11
Version 1.6.8p12
Version 1.6.8p1
Version 1.6.8p2
Version 1.6.8p3
Version 1.6.8p4
Version 1.6.8p5
Version 1.6.8p6
Version 1.6.8p7
Version 1.6.8p8
Version 1.6.8p9
Version 1.6.9
Version 1.6.9_p17
Version 1.6.9_p18
Version 1.6.9_p19
Version 1.6.9_p20
Version 1.6.9_p21
Version 1.6.9_p22
Version 1.6.9p10
Version 1.6.9p11
Version 1.6.9p12
Version 1.6.9p13
Version 1.6.9p14
Version 1.6.9p15
Version 1.6.9p16
Version 1.6.9p17
Version 1.6.9p18
Version 1.6.9p19
Version 1.6.9p1
Version 1.6.9p20
Version 1.6.9p21
Version 1.6.9p22
Version 1.6.9p23
Version 1.6.9p2
Version 1.6.9p3
Version 1.6.9p4
Version 1.6.9p5
Version 1.6.9p6
Version 1.6.9p7
Version 1.6.9p8
Version 1.6.9p9
Version 1.6
Version 1.7.0
Version 1.7.1
Version 1.7.2
Version 1.7.2p1
Version 1.7.2p2
Version 1.7.2p3
Version 1.7.2p4
Version 1.7.2p5
Version 1.7.2p6
Version 1.7.2p7
Version 1.7.3b1
Version 1.7.4
Version 1.7.4p1
Version 1.7.4p2
Version 1.7.4p3
Version 1.7.4p4
Running on/withPlatform Versions
Redhat
Fedora
Version 14

References (16)

Source: secalert@redhat.com
Vendor Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Vendor Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108
Patch
Source: af854a3a-2127-422b-91ae-364da2661108

Timeline

No history available yet.