Sudo before 1.9.5p2 contains an off-by-one error that can result in a heap-based buffer overflow, which allows privilege escalation to root via "sudoedit -s" and a command-line argument that ends with a single backslash character.
References
Configurations
Configuration 1 (hide)
|
Configuration 2 (hide)
|
Configuration 3 (hide)
|
Configuration 4 (hide)
|
Configuration 5 (hide)
|
Configuration 6 (hide)
|
Configuration 7 (hide)
AND |
|
Configuration 8 (hide)
AND |
|
Configuration 9 (hide)
|
Configuration 10 (hide)
AND |
|
Configuration 11 (hide)
AND |
|
Configuration 12 (hide)
AND |
|
Configuration 13 (hide)
AND |
|
Configuration 14 (hide)
AND |
|
Configuration 15 (hide)
|
History
21 Nov 2024, 06:21
Type | Values Removed | Values Added |
---|---|---|
References | () http://packetstormsecurity.com/files/161160/Sudo-Heap-Based-Buffer-Overflow.html - Exploit, Third Party Advisory, VDB Entry | |
References | () http://packetstormsecurity.com/files/161230/Sudo-Buffer-Overflow-Privilege-Escalation.html - Exploit, Third Party Advisory, VDB Entry | |
References | () http://packetstormsecurity.com/files/161270/Sudo-1.9.5p1-Buffer-Overflow-Privilege-Escalation.html - Exploit, Third Party Advisory, VDB Entry | |
References | () http://packetstormsecurity.com/files/161293/Sudo-1.8.31p2-1.9.5p1-Buffer-Overflow.html - Exploit, Third Party Advisory, VDB Entry | |
References | () http://packetstormsecurity.com/files/176932/glibc-syslog-Heap-Based-Buffer-Overflow.html - Exploit, Third Party Advisory, VDB Entry | |
References | () http://seclists.org/fulldisclosure/2021/Feb/42 - Mailing List, Third Party Advisory | |
References | () http://seclists.org/fulldisclosure/2021/Jan/79 - Exploit, Mailing List, Third Party Advisory | |
References | () http://seclists.org/fulldisclosure/2024/Feb/3 - Exploit, Mailing List, Third Party Advisory | |
References | () http://www.openwall.com/lists/oss-security/2021/01/26/3 - Exploit, Mailing List, Third Party Advisory | |
References | () http://www.openwall.com/lists/oss-security/2021/01/27/1 - Mailing List, Third Party Advisory | |
References | () http://www.openwall.com/lists/oss-security/2021/01/27/2 - Mailing List, Third Party Advisory | |
References | () http://www.openwall.com/lists/oss-security/2021/02/15/1 - Exploit, Mailing List, Third Party Advisory | |
References | () http://www.openwall.com/lists/oss-security/2021/09/14/2 - Mailing List, Patch, Third Party Advisory | |
References | () http://www.openwall.com/lists/oss-security/2024/01/30/6 - Exploit, Mailing List | |
References | () http://www.openwall.com/lists/oss-security/2024/01/30/8 - Mailing List | |
References | () https://kc.mcafee.com/corporate/index?page=content&id=SB10348 - Broken Link, Third Party Advisory | |
References | () https://lists.debian.org/debian-lts-announce/2021/01/msg00022.html - Mailing List, Third Party Advisory | |
References | () https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/CALA5FTXIQBRRYUA2ZQNJXB6OQMAXEII/ - Mailing List, Release Notes | |
References | () https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/LHXK6ICO5AYLGFK2TAX5MZKUXTUKWOJY/ - Mailing List, Release Notes | |
References | () https://security.gentoo.org/glsa/202101-33 - Third Party Advisory | |
References | () https://security.netapp.com/advisory/ntap-20210128-0001/ - Third Party Advisory | |
References | () https://security.netapp.com/advisory/ntap-20210128-0002/ - Third Party Advisory | |
References | () https://support.apple.com/kb/HT212177 - Third Party Advisory | |
References | () https://tools.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-sudo-privesc-jan2021-qnYQfcM - Third Party Advisory | |
References | () https://www.beyondtrust.com/blog/entry/security-advisory-privilege-management-for-unix-linux-pmul-basic-and-privilege-management-for-mac-pmm-affected-by-sudo-vulnerability - Third Party Advisory | |
References | () https://www.debian.org/security/2021/dsa-4839 - Third Party Advisory | |
References | () https://www.kb.cert.org/vuls/id/794544 - Third Party Advisory, US Government Resource | |
References | () https://www.openwall.com/lists/oss-security/2021/01/26/3 - Exploit, Mailing List, Third Party Advisory | |
References | () https://www.oracle.com//security-alerts/cpujul2021.html - Patch, Third Party Advisory | |
References | () https://www.oracle.com/security-alerts/cpuapr2022.html - Patch, Third Party Advisory | |
References | () https://www.oracle.com/security-alerts/cpuoct2021.html - Patch, Third Party Advisory | |
References | () https://www.sudo.ws/stable.html#1.9.5p2 - Release Notes | |
References | () https://www.synology.com/security/advisory/Synology_SA_21_02 - Third Party Advisory |
19 Sep 2024, 19:58
Type | Values Removed | Values Added |
---|---|---|
References | () https://www.vicarius.io/vsociety/posts/sudoedit-pwned-cve-2021-3156 - Exploit, Third Party Advisory |
18 Sep 2024, 17:15
Type | Values Removed | Values Added |
---|---|---|
References |
|
09 Jul 2024, 18:27
Type | Values Removed | Values Added |
---|---|---|
CPE | cpe:2.3:a:netapp:ontap_select_deploy_administration_utility:-:*:*:*:*:*:*:* cpe:2.3:a:netapp:cloud_backup:-:*:*:*:*:*:*:* cpe:2.3:a:netapp:ontap_tools:9:*:*:*:*:vmware_vsphere:*:* cpe:2.3:a:netapp:active_iq_unified_manager:-:*:*:*:*:vmware_vsphere:*:* |
|
First Time |
Netapp cloud Backup
Netapp ontap Tools Netapp active Iq Unified Manager Netapp ontap Select Deploy Administration Utility |
|
References | () http://packetstormsecurity.com/files/161160/Sudo-Heap-Based-Buffer-Overflow.html - Exploit, Third Party Advisory, VDB Entry | |
References | () http://packetstormsecurity.com/files/176932/glibc-syslog-Heap-Based-Buffer-Overflow.html - Exploit, Third Party Advisory, VDB Entry | |
References | () http://seclists.org/fulldisclosure/2024/Feb/3 - Exploit, Mailing List, Third Party Advisory | |
References | () http://www.openwall.com/lists/oss-security/2024/01/30/6 - Exploit, Mailing List | |
References | () http://www.openwall.com/lists/oss-security/2024/01/30/8 - Mailing List | |
References | () https://kc.mcafee.com/corporate/index?page=content&id=SB10348 - Broken Link, Third Party Advisory | |
References | () https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/CALA5FTXIQBRRYUA2ZQNJXB6OQMAXEII/ - Mailing List, Release Notes | |
References | () https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/LHXK6ICO5AYLGFK2TAX5MZKUXTUKWOJY/ - Mailing List, Release Notes | |
References | () https://www.beyondtrust.com/blog/entry/security-advisory-privilege-management-for-unix-linux-pmul-basic-and-privilege-management-for-mac-pmm-affected-by-sudo-vulnerability - Third Party Advisory | |
References | () https://www.sudo.ws/stable.html#1.9.5p2 - Release Notes |
04 Feb 2024, 09:15
Type | Values Removed | Values Added |
---|---|---|
References |
|
31 Jan 2024, 18:15
Type | Values Removed | Values Added |
---|---|---|
References |
|
30 Jan 2024, 21:15
Type | Values Removed | Values Added |
---|---|---|
References |
|
07 Nov 2023, 03:37
Type | Values Removed | Values Added |
---|---|---|
References |
|
|
Information
Published : 2021-01-26 21:15
Updated : 2024-11-21 06:21
NVD link : CVE-2021-3156
Mitre link : CVE-2021-3156
CVE.ORG link : CVE-2021-3156
JSON object : View
Products Affected
netapp
- solidfire
- ontap_select_deploy_administration_utility
- ontap_tools
- cloud_backup
- oncommand_unified_manager_core_package
- active_iq_unified_manager
- hci_management_node
oracle
- micros_workstation_5a
- micros_kitchen_display_system_firmware
- micros_workstation_6_firmware
- micros_workstation_6
- micros_compact_workstation_3_firmware
- micros_kitchen_display_system
- micros_compact_workstation_3
- communications_performance_intelligence_center
- tekelec_platform_distribution
- micros_es400_firmware
- micros_es400
- micros_workstation_5a_firmware
mcafee
- web_gateway
sudo_project
- sudo
debian
- debian_linux
fedoraproject
- fedora
synology
- diskstation_manager_unified_controller
- vs960hd
- skynas
- diskstation_manager
- vs960hd_firmware
- skynas_firmware
beyondtrust
- privilege_management_for_unix\/linux
- privilege_management_for_mac
CWE
CWE-193
Off-by-one Error