CVE-2025-32462

Updated: 2025-07-06 01:30:18.329221

Description:

Sudo before 1.9.17p1, when used with a sudoers file that specifies a host that is neither the current host nor ALL, allows listed users to execute commands on unintended machines.


Links NIST CIRCL RHEL Ubuntu

Severity

Severity Score
CVSS Version 2.x NONE 0
CVSS Version 3.x HIGH 7

Status

OS name Project name Version Score Severity Status Errata Last updated

Statement

RHEL 7 ELS sudo 1.8.23 7.0 HIGH Released CLSA-2025:1751895848 2025-07-08 00:19:17
Ubuntu 16.04 ELS sudo 1.8.16 7.0 HIGH Needs Triage 2025-07-01 12:53:36
Ubuntu 18.04 ELS sudo 1.8.21 7.0 HIGH Needs Triage 2025-07-01 12:53:25
Ubuntu 20.04 ELS sudo 1.8.31 7.0 HIGH Needs Triage 2025-07-01 12:53:37
Total: 14