Sudo Information Disclosure Vulnerability
BID:11204
Info
Sudo Information Disclosure Vulnerability
| Bugtraq ID: | 11204 |
| Class: | Access Validation Error |
| CVE: | |
| Remote: | No |
| Local: | Yes |
| Published: | Sep 16 2004 12:00AM |
| Updated: | Sep 16 2004 12:00AM |
| Credit: | This vulnerability was reported to the vendor by Reznic Valery. |
| Vulnerable: |
Todd Miller Sudo 1.6.8 |
| Not Vulnerable: |
Todd Miller Sudo 1.6.8 p1 |
Discussion
Sudo Information Disclosure Vulnerability
Sudo is reported prone to an information disclosure vulnerability.
This vulnerability presents itself when sudo is called with the '-e' option, or the 'sudoedit' command is invoked. In certain circumstances, attackers may access the contents of arbitrary files with superuser privileges.
Version 1.6.8 is reported susceptible to this vulnerability.
Sudo is reported prone to an information disclosure vulnerability.
This vulnerability presents itself when sudo is called with the '-e' option, or the 'sudoedit' command is invoked. In certain circumstances, attackers may access the contents of arbitrary files with superuser privileges.
Version 1.6.8 is reported susceptible to this vulnerability.
Exploit / POC
Sudo Information Disclosure Vulnerability
An exploit is not required. The following exploit 'sudo-exploit.c' was supplied by Angelo Rosiello:
An exploit is not required. The following exploit 'sudo-exploit.c' was supplied by Angelo Rosiello:
Solution / Fix
Sudo Information Disclosure Vulnerability
Solution:
The vendor has released version 1.6.8p1 to address this issue:
Todd Miller Sudo 1.6.8
Solution:
The vendor has released version 1.6.8p1 to address this issue:
Todd Miller Sudo 1.6.8
-
Todd Miller sudo-1.6.8p1.tar.gz
ftp://ftp.sudo.ws/pub/sudo/sudo-1.6.8p1.tar.gz
References
Sudo Information Disclosure Vulnerability
References:
References:
- Sudo Homepage (Todd Miller)
- Sudoedit can expose file contents (Todd Miller)