Back

HIGH

security flaw

Published Apr 2, 2003

Description

Sudo before 1.6.6 contains an off-by-one error that can result in a heap-based buffer overflow that may allow local users to gain root privileges via special characters in the -p (prompt) argument, which are not properly expanded.

Affected products

Remediation

No remediation recorded yet.

Metrics

Weaknesses (1)

References (18)

Change history (0)

No recorded changes yet.

Sources
CVE.org / MITRE
Status PUBLISHED
Assigner mitre
Published Apr 2, 2003
Updated Aug 8, 2024
Reserved Apr 19, 2002
NVD
Status Modified
Modified Jun 16, 2026
Red Hat
Severity n/a
Public date Apr 25, 2002