CVE-2010-0427: Medium severity Todd Miller Sudo vulnerability
sudo 1.6.x before 1.6.9p21, when the runasdefault option is used, does not properly set group memberships, which allows local users to gain privileges via a sudo command.
Other sources
Sudo failed to properly reset group permissions, when "runasdefault" option was used. If a local, unprivileged user was authorized by sudoers file to perform their sudo commands under default user account, it could lead to privilege escalation.
Upstream bug report: http://www.gratisoft.us/bugzilla/showbug.cgi?id=349
Upstream patch: http://www.gratisoft.us/bugzilla/attachment.cgi?id=255
— Red Hat
Affected Software
Remediation
Patch Available
Event History
Frequently Asked Questions
What is the severity of CVE-2010-0427?
CVE-2010-0427 is considered a high severity vulnerability due to its potential to escalate privileges for local users.
How do I fix CVE-2010-0427?
To fix CVE-2010-0427, upgrade to sudo version 1.6.9p21 or later, which addresses the group membership issue.
What versions of sudo are affected by CVE-2010-0427?
CVE-2010-0427 affects sudo versions before 1.6.9p21, including versions 1.6.3 through 1.6.9p20.
Can CVE-2010-0427 be exploited remotely?
CVE-2010-0427 cannot be exploited remotely as it requires local access to the system.
What type of vulnerability is CVE-2010-0427 classified as?
CVE-2010-0427 is classified as a privilege escalation vulnerability.