CVE-2010-1163
Last modified
CVE-2010-1163 is a vulnerability of currently unknown severity. The command matching functionality in sudo 1.6.8 through 1.7.2p5 does not properly handle when a file in the current working directory has the same name as a pseudo-command in the sudoers file and the PATH contains an entry for ".", which allows local users to execute arbitrary commands via a Trojan horse executable, as demonstrated using sudoedit, a different vulnerability than CVE-2010-0426.. EPSS estimates a 0.40% chance of exploitation in the next 30 days.
Description
The command matching functionality in sudo 1.6.8 through 1.7.2p5 does not properly handle when a file in the current working directory has the same name as a pseudo-command in the sudoers file and the PATH contains an entry for ".", which allows local users to execute arbitrary commands via a Trojan horse executable, as demonstrated using sudoedit, a different vulnerability than CVE-2010-0426.
Metrics
Weakness Enumeration
Affected Software
| Vendor | Product | Versions |
|---|---|---|
| Todd Miller | Sudo | 1.6.8 |
| Todd Miller | Sudo | 1.6.8_p1 |
| Todd Miller | Sudo | 1.6.8_p2 |
| Todd Miller | Sudo | 1.6.8_p5 |
| Todd Miller | Sudo | 1.6.8_p7 |
| Todd Miller | Sudo | 1.6.8_p8 |
| Todd Miller | Sudo | 1.6.8_p9 |
| Todd Miller | Sudo | 1.6.8_p12 |
| Todd Miller | Sudo | 1.6.8p7 |
| Todd Miller | Sudo | 1.6.9_p17 |
| Todd Miller | Sudo | 1.6.9_p18 |
| Todd Miller | Sudo | 1.6.9_p19 |
| Todd Miller | Sudo | 1.6.9_p20 |
| Todd Miller | Sudo | 1.6.9_p21 |
| Todd Miller | Sudo | 1.6.9_p22 |
| Todd Miller | Sudo | 1.7.0 |
| Todd Miller | Sudo | 1.7.1 |
| Todd Miller | Sudo | 1.7.2p1 |
| Todd Miller | Sudo | 1.7.2p2 |
| Todd Miller | Sudo | 1.7.2p3 |
| Todd Miller | Sudo | 1.7.2p4 |
References
- http://secunia.com/advisories/39384Vendor Advisory
- http://secunia.com/advisories/39474Vendor Advisory
- http://www.vupen.com/english/advisories/2010/0881Vendor Advisory
- http://www.vupen.com/english/advisories/2010/0895Vendor Advisory
- http://secunia.com/advisories/39384Vendor Advisory
- http://secunia.com/advisories/39474Vendor Advisory
- http://www.vupen.com/english/advisories/2010/0881Vendor Advisory
- http://www.vupen.com/english/advisories/2010/0895Vendor Advisory
Timeline
- Published
- Last Modified
- Status
- Modified
Frequently Asked Questions
What is CVE-2010-1163?
How severe is CVE-2010-1163?
How do I fix CVE-2010-1163?
Are you affected by CVE-2010-1163?
Run a free Strix scan to check your systems for this vulnerability.
Scan your code nowSource: NVD / NIST
