oss-sec mailing list archives

Sudo format string vulnerability (CVE 2012-0809)


From: nicolas vigier <boklm () mars-attacks org>
Date: Mon, 30 Jan 2012 19:37:36 +0100

A vulnerability that can allow a user to run arbitrary commands as root :

http://www.sudo.ws/sudo/alerts/sudo_debug.html

http://seclists.org/fulldisclosure/2012/Jan/att-590/advisory_sudo.txt


Current thread: