NA

CVE-2023-27320

Published: 28/02/2023 Updated: 07/11/2023
CVSS v3 Base Score: 7.2 | Impact Score: 5.9 | Exploitability Score: 1.2
VMScore: 0

Vulnerability Summary

Sudo prior to 1.9.13p2 has a double free in the per-command chroot feature.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

sudo project sudo 1.9.13

sudo project sudo

fedoraproject fedora 36

fedoraproject fedora 37

fedoraproject fedora 38

Vendor Advisories

Debian Bug report logs - #1032163 sudo: CVE-2023-27320 Package: src:sudo; Maintainer for src:sudo is Sudo Maintainers <sudo@packagesdebianorg>; Reported by: Salvatore Bonaccorso <carnil@debianorg> Date: Tue, 28 Feb 2023 21:03:01 UTC Severity: grave Tags: security, upstream Found in version sudo/1913p1-1 Re ...
DescriptionThe MITRE CVE dictionary describes this issue as: Sudo before 1913p2 has a double free in the per-command chroot feature ...