SUSE-SU-2015:0985-1
Dashboard / Vulnerabilities / SUSE-SU-2015:0985-1
SUSE-SU-2015:0985-1
Summary: Security update for sudo
Details: This collective update for sudo provides fixes for the following issues: * Security policy bypass when env_reset is disabled. (CVE-2014-0106, bnc#866503) * Regression in the previous update that causes a segmentation fault when running 'sudo -s'. (bnc#868444) * Command 'who -m' prints no output when using log_input/log_output sudo options. (bnc#863025) Security Issues references: * CVE-2014-0106 <http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2014-0106>
References: https://www.suse.com/support/update/announcement/2015/suse-su-20150985-1/, https://bugzilla.suse.com/823292, https://bugzilla.suse.com/823796, https://bugzilla.suse.com/863025, https://bugzilla.suse.com/866503, https://bugzilla.suse.com/868444, https://bugzilla.suse.com/880764, https://bugzilla.suse.com/901145, https://bugzilla.suse.com/904694, https://bugzilla.suse.com/917806, https://www.suse.com/security/cve/CVE-2014-0106, https://www.suse.com/security/cve/CVE-2014-9680
