Errata ID | 125 |
---|---|
Date | 2016-03-08 |
Source package | sudo |
Fixed in version | 1.8.5p2-1+nmu2.42.201602292006 |
Description | This update fixes the following issue: * sudoedit allowed local uses to gain privileges via a symlink attack on a file whose full path is defined using multiple wildcards in /etc/sudoers (CVE-2015-5602) |
Additional notes | |
CVE ID | CVE-2015-5602 |
UCS Bug number | #40364 |