Multiple race conditions in the (1) Sudo monitor mode and (2) Sysjail policies in Systrace on NetBSD and OpenBSD allow local users to defeat system call interposition, and consequently bypass access control policy and auditing.
2007-08-13T21:17:00.000
2025-04-09T00:30:58.490
Deferred
CVSSv2: 6.2 (MEDIUM)
AV:L/AC:H/Au:N/C:C/I:C/A:C
1.9
10.0
| Type | Vendor | Product | Version/Range | Vulnerable? |
|---|---|---|---|---|
| Operating System | netbsd | netbsd | * | No |
| Operating System | openbsd | openbsd | * | No |
| Application | sysjail | sysjail | * | Yes |
| Application | systrace | systrace | * | Yes |
| Application | todd_miller | sudo | 1.5.6 | Yes |
| Application | todd_miller | sudo | 1.5.7 | Yes |
| Application | todd_miller | sudo | 1.5.8 | Yes |
| Application | todd_miller | sudo | 1.5.9 | Yes |
| Application | todd_miller | sudo | 1.6 | Yes |
| Application | todd_miller | sudo | 1.6.1 | Yes |
| Application | todd_miller | sudo | 1.6.2 | Yes |
| Application | todd_miller | sudo | 1.6.3 | Yes |
| Application | todd_miller | sudo | 1.6.3_p1 | Yes |
| Application | todd_miller | sudo | 1.6.3_p2 | Yes |
| Application | todd_miller | sudo | 1.6.3_p3 | Yes |
| Application | todd_miller | sudo | 1.6.3_p4 | Yes |
| Application | todd_miller | sudo | 1.6.3_p5 | Yes |
| Application | todd_miller | sudo | 1.6.3_p6 | Yes |
| Application | todd_miller | sudo | 1.6.3_p7 | Yes |
| Application | todd_miller | sudo | 1.6.3p1 | Yes |
| Application | todd_miller | sudo | 1.6.3p2 | Yes |
| Application | todd_miller | sudo | 1.6.3p3 | Yes |
| Application | todd_miller | sudo | 1.6.3p4 | Yes |
| Application | todd_miller | sudo | 1.6.3p5 | Yes |
| Application | todd_miller | sudo | 1.6.3p6 | Yes |
| Application | todd_miller | sudo | 1.6.3p7 | Yes |
| Application | todd_miller | sudo | 1.6.4 | Yes |
| Application | todd_miller | sudo | 1.6.4_p1 | Yes |
| Application | todd_miller | sudo | 1.6.4_p2 | Yes |
| Application | todd_miller | sudo | 1.6.4p1 | Yes |
| Application | todd_miller | sudo | 1.6.4p2 | Yes |
| Application | todd_miller | sudo | 1.6.5 | Yes |
| Application | todd_miller | sudo | 1.6.5_p1 | Yes |
| Application | todd_miller | sudo | 1.6.5_p2 | Yes |
| Application | todd_miller | sudo | 1.6.5p1 | Yes |
| Application | todd_miller | sudo | 1.6.5p2 | Yes |
| Application | todd_miller | sudo | 1.6.6 | Yes |
| Application | todd_miller | sudo | 1.6.7 | Yes |
| Application | todd_miller | sudo | 1.6.7_p5 | Yes |
| Application | todd_miller | sudo | 1.6.8 | Yes |
| Application | todd_miller | sudo | 1.6.8_p1 | Yes |
| Application | todd_miller | sudo | 1.6.8_p2 | Yes |
| Application | todd_miller | sudo | 1.6.8_p5 | Yes |
| Application | todd_miller | sudo | 1.6.8_p7 | Yes |
| Application | todd_miller | sudo | 1.6.8_p8 | Yes |
| Application | todd_miller | sudo | 1.6.8_p9 | Yes |
| Application | todd_miller | sudo | 1.6.8_p12 | Yes |