CVE-2023-27320: Double Free
Published Feb 28, 2023
·Updated
Sudo before 1.9.13p2 has a double free in the per-command chroot feature.
Affected Software
6 affected components
Sudo Project Sudo>=1.9.8<1.9.13
Sudo Project Sudo=1.9.13
Sudo Project Sudo=1.9.13-p1
fedoraproject fedora=36
fedoraproject fedora=37
fedoraproject fedora=38
Event History
Feb 28, 2023
CVE Published
via MITRE·12:00 AM
Data Sourced
via MITRE·12:00 AM
Description
Frequently Asked Questions
1
What is the vulnerability ID for this vulnerability?
The vulnerability ID for this vulnerability is CVE-2023-27320.
2
What is the title of the vulnerability?
The title of the vulnerability is 'Sudo before 1.9.13p2 has a double free in the per-command chroot feature'.
3
What is the severity of CVE-2023-27320?
The severity of CVE-2023-27320 is high with a severity value of 7.2.
4
What software is affected by CVE-2023-27320?
Sudo versions before 1.9.13p2 are affected by this vulnerability.
5
How can I fix CVE-2023-27320?
To fix CVE-2023-27320, it is recommended to upgrade to Sudo version 1.9.13p2 or later.