← Back

CVE-2012-2337

nvd nist
Published: May 18, 2012Modified: Apr 29, 2026

JSON object

Loading...
7.2
Vector
AV:L/AC:L/Au:N/C:C/I:C/A:C
Exploitability: 3.9 / Impact: 10.0
Source: NVD

Description

sudo 1.6.x and 1.7.x before 1.7.9p1, and 1.8.x before 1.8.4p5, does not properly support configurations that use a netmask syntax, which allows local users to bypass intended command restrictions in opportunistic circumstances by executing a command on a host that has an IPv4 address.

Affected (19)

Products: Todd Miller: Sudo
1 product
Sudo
Configuration A
19 vulnerable
Vulnerable SoftwareAffected Versions
Todd Miller
Version 1.6.1
Version 1.6.2
Version 1.6.2p3
Version 1.6.3
Version 1.6.3_p7
Version 1.6.4
Version 1.6.4p2
Version 1.6.5
Version 1.6.6
Version 1.6.7
Version 1.6.7p5
Version 1.6.8
Version 1.6.8p12
Version 1.6.9
Version 1.6.9p20
Version 1.6.9p21
Version 1.6.9p22
Version 1.6.9p23
Version 1.6

Related CWEs

References (22)

Source: secalert@redhat.com
Source: secalert@redhat.com
Source: secalert@redhat.com
Source: secalert@redhat.com
Source: secalert@redhat.com
Vendor Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108
Vendor Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108

Timeline

No history available yet.