Advisories Blog | G5 Cyber Security

Mandriva Linux Security Advisory 2010-175

Mandriva Linux Security Advisory 2010-175 – Sudo 1.7.0 through 1.7.4p3, when a Runas group is configured, does not properly handle use of the -u option in conjunction with the -g option, which allows local users to gain privileges via a command line containing a -u root sequence. The updated packages have been patched to correct this issue.

 

You can download this advisory from the following link: https://packetstormsecurity.com/files/download/93754/MDVSA-2010-175.txt

Source: https://packetstormsecurity.com/files/93754/Mandriva-Linux-Security-Advisory-2010-175.html

Exit mobile version