CVE-2023-27320
Summary
| CVE | CVE-2023-27320 |
| State | PUBLIC |
| Assigner | [email protected] |
| Source Priority | CVE Program / NVD first with legacy fallback |
| Published | 2023-02-28 18:15:00 UTC |
| Updated | 2023-11-07 04:09:00 UTC |
| Description | Sudo before 1.9.13p2 has a double free in the per-command chroot feature. |
NVD Known Affected Configurations (CPE 2.3)
References
| Reference | Source | Link | Tags |
|---|
| [SECURITY] Fedora 37 Update: sudo-1.9.13-1.p2.fc37 - package-announce - Fedora Mailing-Lists |
|
lists.fedoraproject.org |
|
| [SECURITY] Fedora 36 Update: sudo-1.9.13-1.p2.fc36 - package-announce - Fedora Mailing-Lists |
FEDORA |
lists.fedoraproject.org |
|
| oss-security - Re: sudo: double free with per-command chroot sudoers
rules |
MLIST |
www.openwall.com |
|
| [SECURITY] Fedora 37 Update: sudo-1.9.13-1.p2.fc37 - package-announce - Fedora Mailing-Lists |
FEDORA |
lists.fedoraproject.org |
|
| Stable Release | Sudo |
MISC |
www.sudo.ws |
|
| CVE-2023-27320 Sudo Vulnerability in NetApp Products | NetApp Product Security |
CONFIRM |
security.netapp.com |
|
| oss-security - sudo: double free with per-command chroot sudoers rules |
MISC |
www.openwall.com |
|
| sudo: Multiple Vulnerabilities (GLSA 202309-12) — Gentoo security |
GENTOO |
security.gentoo.org |
|
| [SECURITY] Fedora 38 Update: sudo-1.9.13-1.p2.fc38 - package-announce - Fedora Mailing-Lists |
FEDORA |
lists.fedoraproject.org |
|
| [SECURITY] Fedora 36 Update: sudo-1.9.13-1.p2.fc36 - package-announce - Fedora Mailing-Lists |
|
lists.fedoraproject.org |
|
| [SECURITY] Fedora 38 Update: sudo-1.9.13-1.p2.fc38 - package-announce - Fedora Mailing-Lists |
|
lists.fedoraproject.org |
|
| CVE Program record |
CVE.ORG |
www.cve.org |
canonical |
| NVD vulnerability detail |
NVD |
nvd.nist.gov |
canonical, analysis |
No vendor comments have been submitted for this CVE.
Legacy QID Mappings
- 182828 Debian Security Update for sudo (CVE-2023-27320)
- 199201 Ubuntu Security Notification for Sudo Vulnerability (USN-5908-1)
- 283755 Fedora Security Update for sudo (FEDORA-2023-d2d6ec2a32)
- 283804 Fedora Security Update for sudo (FEDORA-2023-cb5df36beb)
- 284261 Fedora Security Update for sudo (FEDORA-2023-11c9d868ca)
- 296099 Oracle Solaris 11.4 Support Repository Update (SRU) 57.144.3 Missing (CPUAPR2023)
- 355109 Amazon Linux Security Advisory for sudo : ALAS-2023-135
- 355193 Amazon Linux Security Advisory for sudo : ALAS-2023-135
- 355225 Amazon Linux Security Advisory for sudo : ALAS2023-2023-133
- 355289 Amazon Linux Security Advisory for sudo : ALAS-2023-135
- 355293 Amazon Linux Security Advisory for sudo : ALAS-2023-135
- 355298 Amazon Linux Security Advisory for sudo : ALAS-2023-135
- 355299 Amazon Linux Security Advisory for sudo : ALAS-2023-135
- 355304 Amazon Linux Security Advisory for sudo : ALAS-2023-135
- 355310 Amazon Linux Security Advisory for sudo : ALAS-2023-135
- 355311 Amazon Linux Security Advisory for sudo : ALAS2023-2023-135
- 502955 Alpine Linux Security Update for sudo
- 673144 EulerOS Security Update for sudo (EulerOS-SA-2023-2302)
- 673147 EulerOS Security Update for sudo (EulerOS-SA-2023-2278)
- 710752 Gentoo Linux sudo Multiple Vulnerabilities (GLSA 202309-12)
- 905697 Common Base Linux Mariner (CBL-Mariner) Security Update for sudo (13779)
- 905701 Common Base Linux Mariner (CBL-Mariner) Security Update for sudo (13784)
- 906665 Common Base Linux Mariner (CBL-Mariner) Security Update for sudo (13784-3)
- 906725 Common Base Linux Mariner (CBL-Mariner) Security Update for sudo (13779-1)