Gentoo Linux Security Advisory GLSA 200902-01 – A vulnerability in sudo may allow for privilege escalation. Harald Koenig discovered that sudo incorrectly handles group specifications in Runas_Alias (and related) entries when a group is specified in the list (using %group syntax, to allow a user to run commands as any member of that group) and the user is already a member of that group. Versions less than 1.7.0 are affected.
You can download this advisory from the following link: https://packetstormsecurity.com/files/download/74753/glsa-200902-01.txt
Source: https://packetstormsecurity.com/files/74753/Gentoo-Linux-Security-Advisory-200902-1.html

