漏洞描述
Sudo before 1.9.5p2 contains an off-by-one error that can result in a heap-based buffer overflow, which allows privilege escalation to root via "sudoedit -s" and a command-line argument that ends with a single backslash character.
影响产品
修复建议
建议关注厂商安全公告,及时升级至已修复版本,并结合实际资产暴露情况采取缓解措施。
参考链接
medium.comhttps://medium.com/mii-cybersec/privilege-escalation-cve-2021-3156-new-sudo-vulnerability-4f9e84a9f435↗blog.qualys.comhttps://blog.qualys.com/vulnerabilities-threat-research/2021/01/26/cve-2021-3156-heap-based-buffer-overflow-in-sudo-baron-samedit↗infosecwriteups.comhttps://infosecwriteups.com/baron-samedit-cve-2021-3156-tryhackme-76d7dedc3cff↗packetstormsecurity.comhttp://packetstormsecurity.com/files/161160/Sudo-Heap-Based-Buffer-Overflow.html↗packetstormsecurity.comhttp://packetstormsecurity.com/files/176932/glibc-syslog-Heap-Based-Buffer-Overflow.html↗