Vulnerability Monitor

The vendors, products, and vulnerabilities you care about

CVE-2025-32462


Sudo before 1.9.17p1, when used with a sudoers file that specifies a host that is neither the current host nor ALL, allows listed users to execute commands on unintended machines.


Published

2025-06-30T21:15:30.080

Last Modified

2025-07-17T15:56:46.450

Status

Analyzed

Source

[email protected]

Severity

CVSSv3.1: 2.8 (LOW)

Weaknesses
  • Type: Secondary
    CWE-863

Affected Vendors & Products
Type Vendor Product Version/Range Vulnerable?
Application sudo_project sudo < 1.9.17 Yes
Application sudo_project sudo 1.9.17 Yes

References