cbcvebase.
CVE-2021-3156
published 2021-01-26

CVE-2021-3156: Sudo before 1.9.5p2 contains an off-by-one error that can result in a heap-based buffer overflow, which allows privilege escalation to root via "sudoedit -s"…

high7.8CVSS 3.1
AVLACLPRLUINSUCHIHAH
KEVITWEXPLOIT
CISA Known Exploited Vulnerabilitydue 2022-04-27
Exploited in the wild
Sudo before 1.9.5p2 contains an off-by-one error that can result in a heap-based buffer overflow, which allows privilege escalation to root via "sudoedit -s" and a command-line argument that ends with a single backslash character.

Affected

35 ranges· showing 25
VendorProductVersion rangeFixed in
beyondtrustprivilege_management_for_mac< 21.1.121.1.1
beyondtrustprivilege_management_for_unix_linux< 10.3.2-1010.3.2-10
debiandebian_linux
debiandebian_linux
debiansudo< sudo 1.9.5p1-1.1 (bookworm)sudo 1.9.5p1-1.1 (bookworm)
fedoraprojectfedora
fedoraprojectfedora
mcafeeweb_gateway
mcafeeweb_gateway
mcafeeweb_gateway
netappontap_tools
oraclecommunications_performance_intelligence_center10.3.0.0.0 – 10.3.0.2.1
oraclecommunications_performance_intelligence_center10.4.0.1.0 – 10.4.0.3.1
oraclemicros_compact_workstation_3_firmware
oraclemicros_es400_firmware400 – 410
oraclemicros_kitchen_display_system_firmware
oraclemicros_workstation_5a_firmware
oraclemicros_workstation_6_firmware610 – 655
oracletekelec_platform_distribution7.4.0 – 7.7.1
paloaltopan-os
paloaltoprisma_cloud_compute
paloaltoprisma_sd-wan
sudo_projectsudo
sudo_projectsudo>= 0 < 1.9.5p1-1.11.9.5p1-1.1
sudo_projectsudo>= 0 < 1.9.5p1-1.11.9.5p1-1.1

CVSS provenance

nvdv3.17.8HIGHCVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
osv7.8HIGH
vulncheck7.8HIGH
cisa7.8HIGH