CVE-2010-1163
Last modified
CVE-2010-1163 is a vulnerability of currently unknown severity. The command matching functionality in sudo 1.6.8 through 1.7.2p5 does not properly handle when a file in the current working directory has the same name as a pseudo-command in the sudoers file and the PATH contains an entry for ".", which allows local users to execute arbitrary commands via a Trojan horse executable, as demonstrated using sudoedit, a different vulnerability than CVE-2010-0426.. EPSS estimates a 0.40% chance of exploitation in the next 30 days.
Description
The command matching functionality in sudo 1.6.8 through 1.7.2p5 does not properly handle when a file in the current working directory has the same name as a pseudo-command in the sudoers file and the PATH contains an entry for ".", which allows local users to execute arbitrary commands via a Trojan horse executable, as demonstrated using sudoedit, a different vulnerability than CVE-2010-0426.
Metrics
Weakness Enumeration
Affected Software
| Vendor | Product | Versions |
|---|---|---|
| Todd Miller | Sudo | 1.6.8 |
| Todd Miller | Sudo | 1.6.8_p1 |
| Todd Miller | Sudo | 1.6.8_p2 |
| Todd Miller | Sudo | 1.6.8_p5 |
| Todd Miller | Sudo | 1.6.8_p7 |
| Todd Miller | Sudo | 1.6.8_p8 |
| Todd Miller | Sudo | 1.6.8_p9 |
| Todd Miller | Sudo | 1.6.8_p12 |
| Todd Miller | Sudo | 1.6.8p7 |
| Todd Miller | Sudo | 1.6.9_p17 |
| Todd Miller | Sudo | 1.6.9_p18 |
| Todd Miller | Sudo | 1.6.9_p19 |
| Todd Miller | Sudo | 1.6.9_p20 |
| Todd Miller | Sudo | 1.6.9_p21 |
| Todd Miller | Sudo | 1.6.9_p22 |
| Todd Miller | Sudo | 1.7.0 |
| Todd Miller | Sudo | 1.7.1 |
| Todd Miller | Sudo | 1.7.2p1 |
| Todd Miller | Sudo | 1.7.2p2 |
| Todd Miller | Sudo | 1.7.2p3 |
| Todd Miller | Sudo | 1.7.2p4 |
References
- http://secunia.com/advisories/39384Vendor Advisory
- http://secunia.com/advisories/39474Vendor Advisory
- http://www.vupen.com/english/advisories/2010/0881Vendor Advisory
- http://www.vupen.com/english/advisories/2010/0895Vendor Advisory
- http://secunia.com/advisories/39384Vendor Advisory
- http://secunia.com/advisories/39474Vendor Advisory
- http://www.vupen.com/english/advisories/2010/0881Vendor Advisory
- http://www.vupen.com/english/advisories/2010/0895Vendor Advisory
Timeline
- Published
- Last Modified
- Status
- Modified
Frequently Asked Questions
What is CVE-2010-1163?
How severe is CVE-2010-1163?
How do I fix CVE-2010-1163?
How Strix Helps
- How Strix found a critical auth bypass in etcdStrix autonomously discovered a critical authentication bypass in etcd, later designated CVE-2026-33413.
- Autonomous PentestingAI agents that find and validate exploitable vulnerabilities like this one across your applications.
- PR ReviewsPentest every pull request so vulnerable code is caught before it ships to production.
- AI Penetration TestingHow AI-driven penetration testing continuously covers your attack surface.
Related CVEs from 2010
- CVE-2010-1157Apache Tomcat 5.5.0 through 5.5.29 and 6.0.0 through 6.0.26 …
- CVE-2010-1158Integer overflow in the regular expression engine in Perl 5.…
- CVE-2010-1159Multiple heap-based buffer overflows in Aircrack-ng before 1…
- CVE-2010-1160GNU nano before 2.2.4 does not verify whether a file has bee…
- CVE-2010-1161Race condition in GNU nano before 2.2.4, when run by root to…
- CVE-2010-1162The release_one_tty function in drivers/char/tty_io.c in the…
- CVE-2010-1164Multiple cross-site scripting (XSS) vulnerabilities in Atlas…
- CVE-2010-1165Atlassian JIRA 3.12 through 4.1 allows remote authenticated …
- CVE-2010-1166The fbComposite function in fbpict.c in the Render extension…
- CVE-2010-1167fetchmail 4.6.3 through 6.3.16, when debug mode is enabled, …
- CVE-2010-1168The Safe (aka Safe.pm) module before 2.25 for Perl allows co…
- CVE-2010-1169PostgreSQL 7.4 before 7.4.29, 8.0 before 8.0.25, 8.1 before …
Are you affected by CVE-2010-1163?
Run a free Strix scan to check your systems for this vulnerability.
Scan your code nowSource: NVD / NIST
