First published: Tue Feb 28 2023(Updated: )
Sudo before 1.9.13p2 has a double free in the per-command chroot feature.
Credit: cve@mitre.org cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Sudo Project Sudo | >=1.9.8<1.9.13 | |
Sudo Project Sudo | =1.9.13 | |
Sudo Project Sudo | =1.9.13-p1 | |
Fedoraproject Fedora | =36 | |
Fedoraproject Fedora | =37 | |
Fedoraproject Fedora | =38 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The vulnerability ID for this vulnerability is CVE-2023-27320.
The title of the vulnerability is 'Sudo before 1.9.13p2 has a double free in the per-command chroot feature'.
The severity of CVE-2023-27320 is high with a severity value of 7.2.
Sudo versions before 1.9.13p2 are affected by this vulnerability.
To fix CVE-2023-27320, it is recommended to upgrade to Sudo version 1.9.13p2 or later.