Kid@sh.itjust.worksM to Cybersecurity@sh.itjust.worksEnglish · 1 day agoCISA Sounds Alarm on Critical Sudo Flaw Actively Exploited in Linux and Unix Systemsthehackernews.comexternal-linkmessage-square13fedilinkarrow-up165arrow-down11
arrow-up164arrow-down1external-linkCISA Sounds Alarm on Critical Sudo Flaw Actively Exploited in Linux and Unix Systemsthehackernews.comKid@sh.itjust.worksM to Cybersecurity@sh.itjust.worksEnglish · 1 day agomessage-square13fedilink
minus-squareGJdan@programming.devlinkfedilinkEnglisharrow-up2·edit-215 hours agoIt should be backported in supported ubuntu versions. sudo apt changelog sudo Tap for spoiler sudo (1.9.15p5-3ubuntu5.24.04.1) noble-security; urgency=medium SECURITY UPDATE: Local Privilege Escalation via host option debian/patches/CVE-2025-32462.patch: only allow specifying a host when listing privileges. CVE-2025-32462 SECURITY UPDATE: Local Privilege Escalation via chroot option debian/patches/CVE-2025-32463.patch: remove user-selected root directory chroot option. CVE-2025-32463 – Marc Deslauriers marc.deslauriers@ubuntu.com Wed, 25 Jun 2025 08:42:53 -0400
It should be backported in supported ubuntu versions.
Tap for spoiler