Vulnerability   
Search   
    Search 324607 CVE descriptions
and 145615 test descriptions,
access 10,000+ cross references.
Tests   CVE   All  

CVE ID:CVE-2017-1000368
Description:Todd Miller's sudo version 1.8.20p1 and earlier is vulnerable to an input validation (embedded newlines) in the get_process_ttyname() function resulting in information disclosure and command execution.
Test IDs: 1.3.6.1.4.1.25623.1.0.891011   1.3.6.1.4.1.25623.1.1.12.2019.3968.2   1.3.6.1.4.1.25623.1.1.4.2017.1778.1   1.3.6.1.4.1.25623.1.1.2.2017.1121   1.3.6.1.4.1.25623.1.1.4.2017.1771.1   1.3.6.1.4.1.25623.1.1.2.2017.1120  
Cross References: Common Vulnerability Exposure (CVE) ID: CVE-2017-1000368
BugTraq ID: 98838
http://www.securityfocus.com/bid/98838
https://security.gentoo.org/glsa/201710-04
RedHat Security Advisories: RHSA-2017:1574
https://access.redhat.com/errata/RHSA-2017:1574
https://usn.ubuntu.com/3968-1/
https://usn.ubuntu.com/3968-2/




© 1998-2025 E-Soft Inc. All rights reserved.