Errata ID | 403 |
---|---|
Date | 2018-05-08 |
Source package | sudo |
Fixed in version | 1.8.10p3-1+deb8u5 |
Description | This update addresses the following issue: * sudo is vulnerable to an input validation (embedded newlines) in the get_process_ttyname() function resulting in information disclosure and command execution. (CVE-2017-1000368) |
Additional notes | |
CVE ID | CVE-2017-1000368 |
UCS Bug number | #46161 |