cbcvebase.
CVE-2005-1993
published 2005-06-20

CVE-2005-1993: Race condition in sudo 1.3.1 up to 1.6.8p8, when the ALL pseudo-command is used after a user entry in the sudoers file, allows local users to gain privileges…

low3.7CVSS 3.1
AVLACHAuNCPIPAP
Race condition in sudo 1.3.1 up to 1.6.8p8, when the ALL pseudo-command is used after a user entry in the sudoers file, allows local users to gain privileges via a symlink attack.

Affected

36 ranges· showing 25
VendorProductVersion rangeFixed in
crypto-js_projectcrypto-js>= 0 < 4.2.04.2.0
debiansudo< sudo 1.6.8p9-1 (bookworm)sudo 1.6.8p9-1 (bookworm)
entronadcrypto-es>= 0 < 2.1.02.1.0
sudo_projectsudo>= 0 < 1.6.8p9-11.6.8p9-1
sudo_projectsudo>= 0 < 1.6.8p9-11.6.8p9-1
sudo_projectsudo>= 0 < 1.6.8p9-11.6.8p9-1
sudo_projectsudo>= 0 < 1.6.8p9-11.6.8p9-1
todd_millersudo
todd_millersudo
todd_millersudo
todd_millersudo
todd_millersudo
todd_millersudo
todd_millersudo
todd_millersudo
todd_millersudo
todd_millersudo
todd_millersudo
todd_millersudo
todd_millersudo
todd_millersudo
todd_millersudo
todd_millersudo
todd_millersudo
todd_millersudo

CVSS provenance

nvd3.7LOWAV:L/AC:H/Au:N/C:P/I:P/A:P
osv3.7LOW