Tag

heap overflow

1 views collected around this technical thread.

Efficient Ops
Efficient Ops
Mar 9, 2021 · Information Security

Why the Critical Sudo Vulnerability (CVE‑2021‑3156) Went Unpatched for 10 Years

A heap‑buffer‑overflow bug in sudo (CVE‑2021‑3156) lets any local user obtain root without a password, existed for a decade before being fixed, and can be tested with a simple sudoedit command on vulnerable Linux distributions.

CVE-2021-3156Linux securityheap overflow
0 likes · 6 min read
Why the Critical Sudo Vulnerability (CVE‑2021‑3156) Went Unpatched for 10 Years