sudo 1.6.8 and other versions does not clear the PYTHONINSPECT environment variable, which allows limited local users to gain privileges via a Python script, a variant of CVE-2005-4158.
2006-01-09T23:03:00.000
2025-04-03T01:03:51.193
Deferred
CVSSv2: 7.2 (HIGH)
AV:L/AC:L/Au:N/C:C/I:C/A:C
3.9
10.0
Type | Vendor | Product | Version/Range | Vulnerable? |
---|---|---|---|---|
Application | todd_miller | sudo | 1.5.6 | Yes |
Application | todd_miller | sudo | 1.5.7 | Yes |
Application | todd_miller | sudo | 1.5.8 | Yes |
Application | todd_miller | sudo | 1.5.9 | Yes |
Application | todd_miller | sudo | 1.6 | Yes |
Application | todd_miller | sudo | 1.6.1 | Yes |
Application | todd_miller | sudo | 1.6.2 | Yes |
Application | todd_miller | sudo | 1.6.3 | Yes |
Application | todd_miller | sudo | 1.6.3_p1 | Yes |
Application | todd_miller | sudo | 1.6.3_p2 | Yes |
Application | todd_miller | sudo | 1.6.3_p3 | Yes |
Application | todd_miller | sudo | 1.6.3_p4 | Yes |
Application | todd_miller | sudo | 1.6.3_p5 | Yes |
Application | todd_miller | sudo | 1.6.3_p6 | Yes |
Application | todd_miller | sudo | 1.6.3_p7 | Yes |
Application | todd_miller | sudo | 1.6.4 | Yes |
Application | todd_miller | sudo | 1.6.4_p1 | Yes |
Application | todd_miller | sudo | 1.6.4_p2 | Yes |
Application | todd_miller | sudo | 1.6.5 | Yes |
Application | todd_miller | sudo | 1.6.5_p1 | Yes |
Application | todd_miller | sudo | 1.6.5_p2 | Yes |
Application | todd_miller | sudo | 1.6.6 | Yes |
Application | todd_miller | sudo | 1.6.7 | Yes |
Application | todd_miller | sudo | 1.6.7_p5 | Yes |
Application | todd_miller | sudo | 1.6.8 | Yes |
Application | todd_miller | sudo | 1.6.8_p1 | Yes |
Application | todd_miller | sudo | 1.6.8_p2 | Yes |
Application | todd_miller | sudo | 1.6.8_p5 | Yes |
Application | todd_miller | sudo | 1.6.8_p7 | Yes |
Application | todd_miller | sudo | 1.6.8_p8 | Yes |
Application | todd_miller | sudo | 1.6.8_p9 | Yes |
Application | todd_miller | sudo | 1.6.8_p12 | Yes |
Operating System | ubuntu | ubuntu_linux | 4.1 | Yes |
Operating System | ubuntu | ubuntu_linux | 4.1 | Yes |
Operating System | ubuntu | ubuntu_linux | 5.04 | Yes |
Operating System | ubuntu | ubuntu_linux | 5.04 | Yes |
Operating System | ubuntu | ubuntu_linux | 5.04 | Yes |
Operating System | ubuntu | ubuntu_linux | 5.10 | Yes |
Operating System | ubuntu | ubuntu_linux | 5.10 | Yes |
Operating System | ubuntu | ubuntu_linux | 5.10 | Yes |