ALSA-2024:0811

    Dashboard / Vulnerabilities / ALSA-2024:0811

    ALSA-2024:0811

    Published: 14 Feb 2024Last Modified: 4 Feb 2026

    Summary: Moderate: sudo security update

    Details: The sudo packages contain the sudo utility which allows system administrators to provide certain users with the permission to execute privileged commands, which are used for system management purposes, without having to log in as root. Bug Fix(es) and Enhancement(s): * CVE-2023-28487 sudo: Sudo does not escape control characters in sudoreplay output * CVE-2023-28486 sudo: Sudo does not escape control characters in log messages * CVE-2023-42465 sudo: Targeted Corruption of Register and Stack Variables

    Affected packages

    Package

    Name: sudo

    Purl: pkg:rpm/almalinux/sudo

    Affected ranges

    Type: ECOSYSTEM

    Events:

    Introduced- 0
    Fixed -1.9.5p2-10.el9_3

    Affected versions

    Common Vulnerability Scoring System

    Attack Vector
    Network
    Adjacent
    Local
    Physical
    Privileges Required
    None
    Low
    High
    User Interaction
    None
    Required
    Scope
    Unchanged
    Changed
    Confidentiality
    None
    Low
    High
    Integrity
    None
    Low
    High
    Availability
    None
    Low
    High
    ALSA-2024:0811 | CVE-DB