CVE-2019-14287 EXPLOIT
8.8
HIGH · CVSS 3.1 · EPSS 63.8% (pctl 99)
Patch early
A public exploit exists.
Description
In Sudo before 1.8.28, an attacker with access to a Runas ALL sudoer account can bypass certain policy blacklists and session PAM modules, and can cause incorrect logging, by invoking sudo with a crafted user ID. For example, this allows bypass of !root configuration, and USER= logging, for a "sudo -u \#$((0xffffffff))" command.
Scoring
| CVSS | 8.8 (HIGH, v3.1) |
|---|---|
| Vector | CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H |
| EPSS | 63.76% — more likely to be exploited than 99% of all CVEs |
| Weakness | CWE-755 |
| On CISA KEV | no |
| Public exploit | yes |
| Published | 2019-10-17 |
| Last modified | 2026-06-17 |
Affected (15)
| Vendor | Product |
|---|---|
| canonical | ubuntu linux |
| debian | debian linux |
| fedoraproject | fedora |
| netapp | element software management node |
| opensuse | leap |
| redhat | enterprise linux |
| redhat | enterprise linux desktop |
| redhat | enterprise linux eus |
| redhat | enterprise linux server |
| redhat | enterprise linux server aus |
| redhat | enterprise linux server tus |
| redhat | enterprise linux workstation |
| redhat | openshift container platform |
| redhat | virtualization |
| sudo project | sudo |
Public exploits
| Source | Title | Date |
|---|---|---|
| exploit-db | sudo 1.8.27 - Security Bypass | 2019-10-15 |
References
- http://lists.opensuse.org/opensuse-security-announce/2019-10/msg00042.html
- http://lists.opensuse.org/opensuse-security-announce/2019-10/msg00047.html
- http://packetstormsecurity.com/files/154853/Slackware-Security-Advisory-sudo-Updates.html
- http://www.openwall.com/lists/oss-security/2019/10/14/1
- http://www.openwall.com/lists/oss-security/2019/10/24/1
- http://www.openwall.com/lists/oss-security/2019/10/29/3
- http://www.openwall.com/lists/oss-security/2021/09/14/2
- https://access.redhat.com/errata/RHBA-2019:3248
- https://access.redhat.com/errata/RHSA-2019:3197
- https://access.redhat.com/errata/RHSA-2019:3204
- https://access.redhat.com/errata/RHSA-2019:3205
- https://access.redhat.com/errata/RHSA-2019:3209
- https://access.redhat.com/errata/RHSA-2019:3219
- https://access.redhat.com/errata/RHSA-2019:3278
- https://access.redhat.com/errata/RHSA-2019:3694
- https://access.redhat.com/errata/RHSA-2019:3754
- https://access.redhat.com/errata/RHSA-2019:3755
- https://access.redhat.com/errata/RHSA-2019:3895
- https://access.redhat.com/errata/RHSA-2019:3916
- https://access.redhat.com/errata/RHSA-2019:3941
→ the Explorer · watch your stack · NVD