CVE-2016-7076

Description

sudo before version 1.8.18p1 is vulnerable to a bypass in the sudo noexec restriction if application run via sudo executed wordexp() C library function with a user supplied argument. A local user permitted to run such application via sudo with noexec restriction could possibly use this flaw to execute arbitrary commands with elevated privileges.

Risk Information

Base Score
7.8
MODERATE
Vector
CVSS:3.0/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
EPSS Score
Exploitation Probability
0.077

Associated Vulnerability

VulnerabilityOS Platform
Provide limited super user privileges to specific users (USN-3304-1) sudo_1.8.16-0ubuntu1.6_i386.debLinux
Provide limited super user privileges to specific users (USN-3304-1) sudo_1.8.16-0ubuntu1.6_amd64.debLinux
Provide limited super user privileges to specific users (USN-3304-1) sudo-ldap_1.8.16-0ubuntu1.6_i386.debLinux
Provide limited super user privileges to specific users (USN-3304-1) sudo-ldap_1.8.16-0ubuntu1.6_amd64.debLinux
SUSE-SU-2016:2891-1(SUSE Linux Enterprise Server 11-SP4 ) sudo-1.7.6p2-0.29.1.x86_64.rpmLinux

Patch Details

No records found

References

https://nvd.nist.gov/vuln/detail/CVE-2023-1234
https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2023-1234