CVE Feed

    Dashboard / CVE / CVE-2021-3156

    CVE-2021-3156

    Sudo before 1.9.5p2 contains an off-by-one error that can result in a heap-based buffer overflow, which allows privilege escalation to root via "sudoedit -s" and a command-line argument that ends with a single backslash character.

    Published:Jan 26, 2021
    Last Modified:Nov 10, 2025
    EPS:Jan 26, 2021
    EPSS Score:0.92188
    CVSS Score:7.8

    CISA Notification

    Description

    Sudo before 1.9.5p2 contains an off-by-one error that can result in a heap-based buffer overflow, which allows privilege escalation to root via "sudoedit -s" and a command-line argument that ends with a single backslash character.

    Required Action:

    Apply updates per vendor instructions.

    Notes:

    No extra notes provided.

    Due Date
    Apr 27, 2022
    1598 days ago
    Alert Date
    Apr 6, 2022
    1619 days ago

    Affected Products

    Vendor
    Beyondtrust
    Product
    Privilege Management For Mac
    Vendor
    Beyondtrust
    Product
    Privilege Management For Unix\/linux
    Vendor
    Debian
    Product
    Debian Linux
    Vendor
    Fedoraproject
    Product
    Fedora
    Vendor
    Mcafee
    Product
    Web Gateway
    Vendor
    Netapp
    Product
    Active Iq Unified Manager
    Vendor
    Netapp
    Product
    Cloud Backup
    Vendor
    Netapp
    Product
    Hci Management Node
    Vendor
    Netapp
    Product
    Oncommand Unified Manager Core Package
    Vendor
    Netapp
    Product
    Ontap Select Deploy Administration Utility
    Vendor
    Netapp
    Product
    Ontap Tools
    Vendor
    Netapp
    Product
    Solidfire
    Vendor
    Oracle
    Product
    Communications Performance Intelligence Center
    Vendor
    Oracle
    Product
    Micros Compact Workstation 3
    Vendor
    Oracle
    Product
    Micros Compact Workstation 3 Firmware
    Vendor
    Oracle
    Product
    Micros Es400
    Vendor
    Oracle
    Product
    Micros Es400 Firmware
    Vendor
    Oracle
    Product
    Micros Kitchen Display System
    Vendor
    Oracle
    Product
    Micros Kitchen Display System Firmware
    Vendor
    Oracle
    Product
    Micros Workstation 5a
    Vendor
    Oracle
    Product
    Micros Workstation 5a Firmware
    Vendor
    Oracle
    Product
    Micros Workstation 6
    Vendor
    Oracle
    Product
    Micros Workstation 6 Firmware
    Vendor
    Oracle
    Product
    Tekelec Platform Distribution
    Vendor
    Redhat
    Product
    Enterprise Linux
    Vendor
    Redhat
    Product
    Rhel Aus
    Vendor
    Redhat
    Product
    Rhel E4s
    Vendor
    Redhat
    Product
    Rhel Els
    Vendor
    Redhat
    Product
    Rhel Eus
    Vendor
    Redhat
    Product
    Rhel Tus
    Vendor
    Redhat
    Product
    Rhev Hypervisor
    Vendor
    Sudo Project
    Product
    Sudo
    Vendor
    Synology
    Product
    Diskstation Manager
    Vendor
    Synology
    Product
    Diskstation Manager Unified Controller
    Vendor
    Synology
    Product
    Skynas
    Vendor
    Synology
    Product
    Skynas Firmware
    Vendor
    Synology
    Product
    Vs960hd
    Vendor
    Synology
    Product
    Vs960hd Firmware

    Exploits

    http://packetstormsecurity.com/files/161160/Sudo-Heap-Based-Buffer-Overflow.htmlhttp://packetstormsecurity.com/files/161230/Sudo-Buffer-Overflow-Privilege-Escalation.htmlhttp://packetstormsecurity.com/files/161270/Sudo-1.9.5p1-Buffer-Overflow-Privilege-Escalation.htmlhttp://packetstormsecurity.com/files/161293/Sudo-1.8.31p2-1.9.5p1-Buffer-Overflow.htmlhttp://packetstormsecurity.com/files/176932/glibc-syslog-Heap-Based-Buffer-Overflow.htmlhttp://seclists.org/fulldisclosure/2021/Jan/79http://seclists.org/fulldisclosure/2024/Feb/3http://www.openwall.com/lists/oss-security/2021/01/26/3http://www.openwall.com/lists/oss-security/2021/02/15/1http://www.openwall.com/lists/oss-security/2024/01/30/6https://www.openwall.com/lists/oss-security/2021/01/26/3https://www.vicarius.io/vsociety/posts/sudoedit-pwned-cve-2021-3156http://packetstormsecurity.com/files/161160/Sudo-Heap-Based-Buffer-Overflow.htmlhttp://packetstormsecurity.com/files/161230/Sudo-Buffer-Overflow-Privilege-Escalation.htmlhttp://packetstormsecurity.com/files/161270/Sudo-1.9.5p1-Buffer-Overflow-Privilege-Escalation.htmlhttp://packetstormsecurity.com/files/161293/Sudo-1.8.31p2-1.9.5p1-Buffer-Overflow.htmlhttp://packetstormsecurity.com/files/176932/glibc-syslog-Heap-Based-Buffer-Overflow.htmlhttp://seclists.org/fulldisclosure/2021/Jan/79http://seclists.org/fulldisclosure/2024/Feb/3http://www.openwall.com/lists/oss-security/2021/01/26/3http://www.openwall.com/lists/oss-security/2021/02/15/1http://www.openwall.com/lists/oss-security/2024/01/30/6https://www.openwall.com/lists/oss-security/2021/01/26/3https://www.exploit-db.com/exploits/49521https://github.com/0x4ndy/clifhttps://github.com/0x7183/CVE-2021-3156https://github.com/0xdevil/CVE-2021-3156https://github.com/1N53C/CVE-2021-3156-PoChttps://github.com/acidburn2049/CVE-2021-3156https://github.com/ajtech-hue/CVE-2021-3156-Mitigation-ShellScript-Buildhttps://github.com/apogiatzis/docker-CVE-2021-3156https://github.com/arvindshima/CVE-2021-3156https://github.com/asepsaepdin/CVE-2021-3156https://github.com/Ashish-dawani/CVE-2021-3156-Patchhttps://github.com/Bad3r/CVE-2021-3156-without-ip-commandhttps://github.com/baka9moe/CVE-2021-3156-Exphttps://github.com/barebackbandit/CVE-2021-3156https://github.com/BearCat4/CVE-2021-3156https://github.com/binw2018/CVE-2021-3156-SCRIPThttps://github.com/blasty/CVE-2021-3156https://github.com/calonnuotcabe/CVE-2021-3156https://github.com/capturingcats/CVE-2021-3156https://github.com/cdeletre/Serpentiel-CVE-2021-3156https://github.com/chenaotian/CVE-2021-3156https://github.com/CptGibbon/CVE-2021-3156https://github.com/CyberCommands/CVE-2021-3156https://github.com/czeti/baron-samedithttps://github.com/d3c3ptic0n/CVE-2021-3156https://github.com/DakerQirszh/cve-2021-3156https://github.com/DanielAzulayy/CTF-2021https://github.com/DASICS-ICT/DASICS-CVE-2021-3156https://github.com/DDayLuong/CVE-2021-3156https://github.com/dinhbaouit/CVE-2021-3156https://github.com/donghyunlee00/CVE-2021-3156https://github.com/elbee-cyber/CVE-2021-3156-PATCHERhttps://github.com/Exodusro/CVE-2021-3156https://github.com/freeFV/CVE-2021-3156https://github.com/gmh5225/cve-2021-3156-https://github.com/gmldbd94/cve-2021-3156https://github.com/halissha/CVE-2021-3156https://github.com/HuzaifaTariqAfzalKhan/CVE-Exploit-Research-Development-ITSOLERAhttps://github.com/hycheng15/CVE-2021-3156https://github.com/IJBaig/CVE-2021-3156https://github.com/jm33-m0/CVE-2021-3156https://github.com/kal1gh0st/CVE-2021-3156https://github.com/kernelzeroday/CVE-2021-3156-Baron-Samedithttps://github.com/Kranti08/CVE-2021-3156-Baron-Samedithttps://github.com/LiveOverflow/pwnedithttps://github.com/lmol/CVE-2021-3156https://github.com/lypd0/CVE-2021-3156-checkerhttps://github.com/Maalfer/Sudo-CVE-2021-3156https://github.com/mbcrump/CVE-2021-3156https://github.com/Mhackiori/CVE-2021-3156https://github.com/mr-r3b00t/CVE-2021-3156https://github.com/musergi/CVE-2021-3156https://github.com/mutur4/CVE-2021-3156https://github.com/nexcess/sudo_cve-2021-3156https://github.com/ngtuonghung/CVE-2021-3156https://github.com/nobodyatall648/CVE-2021-3156https://github.com/oneoy/CVE-2021-3156https://github.com/perlun/sudo-1.8.3p1-patchedhttps://github.com/ph4ntonn/CVE-2021-3156https://github.com/PhuketIsland/CVE-2021-3156-centos7https://github.com/puckiestyle/CVE-2021-3156https://github.com/PurpleOzone/PE_CVE-CVE-2021-3156https://github.com/Q4n/CVE-2021-3156https://github.com/q77190858/CVE-2021-3156https://github.com/Rana-Ali93/CVE-2021-3156-Sudo-Buffer-Overflow-Linuxhttps://github.com/redhawkeye/sudo-exploithttps://github.com/ret2basic/SudoSciencehttps://github.com/reverse-ex/CVE-2021-3156https://github.com/Robblackcatchai/porfolio-Baron-Samedithttps://github.com/RodricBr/CVE-2021-3156https://github.com/Rvn0xsy/CVE-2021-3156-plushttps://github.com/SantiagoSerrao/ScannerCVE-2021-3156https://github.com/sbladiamond/CVE-2021-3156https://github.com/Sebastianbedoya25/CVE-2021-3156https://github.com/Shams-Ul-Mehmood/CVE-2021-3156-Projecthttps://github.com/sharkmoos/Baron-Samedithttps://github.com/shishirpandey18/CVE-2021-3156https://github.com/Shuhaib88/Baron-Samedit-Heap-Buffer-Overflow-CVE-2021-3156https://github.com/Sornphut/CVE-2021-3156-Heap-Based-Buffer-Overflow-in-Sudo-Baron-Samedit-https://github.com/stong/CVE-2021-3156https://github.com/Superliverbun/cve-2021-3156-https://github.com/teamtopkarl/CVE-2021-3156https://github.com/ten-ops/baron-samedithttps://github.com/TheFlash2k/CVE-2021-3156https://github.com/TheLeopard65/CVE-2021-3156-Baron-Samedithttps://github.com/TopskiyPavelQwertyGang/Review.CVE-2021-3156https://github.com/unauth401/CVE-2021-3156https://github.com/VilmarTuminskii/cve-2021-3156-sudo-labhttps://github.com/WhatsWrongAndWhy/CVE-2021-3156https://github.com/worawit/CVE-2021-3156https://github.com/wurwur/CVE-2021-3156https://github.com/yaunsky/cve-2021-3156https://github.com/ymrsmns/CVE-2021-3156https://github.com/ypl6/heaplenshttps://github.com/ZTK-009/CVE-2021-3156https://www.exploit-db.com/exploits/49522

    Common Attack Pattern Enumeration and Classification (CAPEC)

    References

    Common Vulnerability Scoring System

    Attack Vector
    Network
    Adjacent
    Local
    Physical
    Privileges Required
    None
    Low
    High
    User Interaction
    None
    Required
    Scope
    Unchanged
    Changed
    Confidentiality
    None
    Low
    High
    Integrity
    None
    Low
    High
    Availability
    None
    Low
    High