UbuntuUpdates.org

Package "sudo"

Name: sudo

Description:

Provide limited super user privileges to specific users

Latest version: 1.8.9p5-1ubuntu1.4
Release: trusty (14.04)
Level: updates
Repository: main

Links


Download "sudo"


Other versions of "sudo" in Trusty

Repository Area Version
base main 1.8.9p5-1ubuntu1
security universe 1.8.9p5-1ubuntu1.4
security main 1.8.9p5-1ubuntu1.4
updates universe 1.8.9p5-1ubuntu1.4

Changelog

Version: 1.8.9p5-1ubuntu1.4 2017-05-30 17:06:39 UTC

  sudo (1.8.9p5-1ubuntu1.4) trusty-security; urgency=medium

  * SECURITY UPDATE: /proc/self/stat parsing confusion
    - debian/patches/CVE-2017-1000367.patch: adjust parsing to
      find ttyname
    - CVE-2017-1000367

 -- Steve Beattie <email address hidden> Mon, 29 May 2017 01:05:33 -0700

Source diff to previous version
CVE-2017-1000 RESERVED

Version: 1.8.9p5-1ubuntu1.3 2016-10-26 15:06:34 UTC

  sudo (1.8.9p5-1ubuntu1.3) trusty-proposed; urgency=medium

  * debian/sudoers:
    - include /snap/bin in the secure_path (LP: #1595558)

 -- Michael Vogt <email address hidden> Mon, 10 Oct 2016 10:10:46 +0200

Source diff to previous version
1595558 sudo doesn't have /snap/bin in PATH

Version: 1.8.9p5-1ubuntu1.2 2015-09-09 02:06:32 UTC

  sudo (1.8.9p5-1ubuntu1.2) trusty-proposed; urgency=medium

  * Ensure uid matching works in the sudoers file. (LP: #1319403)

 -- Brian Murray Wed, 26 Aug 2015 16:59:47 -0700

Source diff to previous version
1319403 uid match not working in sudoers file

Version: 1.8.9p5-1ubuntu1.1 2015-03-16 15:07:36 UTC

  sudo (1.8.9p5-1ubuntu1.1) trusty-security; urgency=medium

  * SECURITY UPDATE: arbitrary file access via TZ
    - debian/patches/CVE-2014-9680.patch: sanity check TZ env variable in
      configure, configure.ac, doc/sudoers.cat, doc/sudoers.man.in,
      doc/sudoers.mdoc.in, m4/sudo.m4, pathnames.h.in,
      plugins/sudoers/env.c.
    - CVE-2014-9680
 -- Marc Deslauriers <email address hidden> Thu, 12 Mar 2015 11:21:06 -0400

CVE-2014-9680 preserves TZ by default



About   -   Send Feedback to @ubuntu_updates