[prev in list] [next in list] [prev in thread] [next in thread] 

List:       oss-security
Subject:    [oss-security] Re: CVE request: potential bypass of sudo tty_tickets constraints
From:       "Todd C. Miller" <Todd.Miller () courtesan ! com>
Date:       2013-02-28 10:24:51
Message-ID: 201302281024.r1SAOp6Y011022 () core ! courtesan ! com
[Download RAW message or body]

> Sudo versions affected:
>     Sudo 1.3.5 through 1.7.10p6 and sudo 1.8.0 through 1.8.6p7 when
>     the "tty_tickets" option is enabled.  This option is enabled
>     by default in sudo 1.7.4 and above.

The affected versions are actually: 

  Sudo 1.3.5 through 1.7.10p5 and sudo 1.8.0 through 1.8.6p6 inclusive.

 - todd
[prev in list] [next in list] [prev in thread] [next in thread] 

Configure | About | News | Add a list | Sponsored by KoreLogic