UbuntuUpdates.org

Package "sudo"

Name: sudo

Description:

Provide limited super user privileges to specific users

Latest version: 1.8.9p5-1ubuntu1.4
Release: trusty (14.04)
Level: security
Repository: main

Links


Download "sudo"


Other versions of "sudo" in Trusty

Repository Area Version
base main 1.8.9p5-1ubuntu1
security universe 1.8.9p5-1ubuntu1.4
updates universe 1.8.9p5-1ubuntu1.4
updates main 1.8.9p5-1ubuntu1.4

Changelog

Version: 1.8.9p5-1ubuntu1.4 2017-05-30 16:06:38 UTC

  sudo (1.8.9p5-1ubuntu1.4) trusty-security; urgency=medium

  * SECURITY UPDATE: /proc/self/stat parsing confusion
    - debian/patches/CVE-2017-1000367.patch: adjust parsing to
      find ttyname
    - CVE-2017-1000367

 -- Steve Beattie <email address hidden> Mon, 29 May 2017 01:05:33 -0700

Source diff to previous version
CVE-2017-1000 RESERVED

Version: 1.8.9p5-1ubuntu1.1 2015-03-16 14:07:06 UTC

  sudo (1.8.9p5-1ubuntu1.1) trusty-security; urgency=medium

  * SECURITY UPDATE: arbitrary file access via TZ
    - debian/patches/CVE-2014-9680.patch: sanity check TZ env variable in
      configure, configure.ac, doc/sudoers.cat, doc/sudoers.man.in,
      doc/sudoers.mdoc.in, m4/sudo.m4, pathnames.h.in,
      plugins/sudoers/env.c.
    - CVE-2014-9680
 -- Marc Deslauriers <email address hidden> Thu, 12 Mar 2015 11:21:06 -0400

CVE-2014-9680 preserves TZ by default



About   -   Send Feedback to @ubuntu_updates