CVE-2011-0008 : Detail

CVE-2011-0008

0.05%V4
Local
2011-01-20
17h00 +00:00
2017-08-16
12h57 +00:00
Notifications for a CVE
Stay informed of any changes for a specific CVE.
Notifications manage

CVE Descriptions

A certain Fedora patch for parse.c in sudo before 1.7.4p5-1.fc14 on Fedora 14 does not properly interpret a system group (aka %group) in the sudoers file during authorization decisions for a user who belongs to that group, which allows local users to leverage an applicable sudoers file and gain root privileges via a sudo command. NOTE: this vulnerability exists because of a CVE-2009-0034 regression.

CVE Informations

Metrics

Metrics Score Severity CVSS Vector Source
V2 6.9 AV:L/AC:M/Au:N/C:C/I:C/A:C nvd@nist.gov

EPSS

EPSS is a scoring model that predicts the likelihood of a vulnerability being exploited.

EPSS Score

The EPSS model produces a probability score between 0 and 1 (0 and 100%). The higher the score, the greater the probability that a vulnerability will be exploited.

EPSS Percentile

The percentile is used to rank CVE according to their EPSS score. For example, a CVE in the 95th percentile according to its EPSS score is more likely to be exploited than 95% of other CVE. Thus, the percentile is used to compare the EPSS score of a CVE with that of other CVE.

Products Mentioned

Configuraton 0

Todd_miller>>Sudo >> Version To (including) 1.7.4p5

Todd_miller>>Sudo >> Version 1.3.1

Todd_miller>>Sudo >> Version 1.5

Todd_miller>>Sudo >> Version 1.5.2

Todd_miller>>Sudo >> Version 1.5.3

Todd_miller>>Sudo >> Version 1.5.6

Todd_miller>>Sudo >> Version 1.5.7

Todd_miller>>Sudo >> Version 1.5.8

Todd_miller>>Sudo >> Version 1.5.9

Todd_miller>>Sudo >> Version 1.6

Todd_miller>>Sudo >> Version 1.6.1

Todd_miller>>Sudo >> Version 1.6.2

Todd_miller>>Sudo >> Version 1.6.2p1

Todd_miller>>Sudo >> Version 1.6.2p2

Todd_miller>>Sudo >> Version 1.6.2p3

Todd_miller>>Sudo >> Version 1.6.3

Todd_miller>>Sudo >> Version 1.6.3_p1

Todd_miller>>Sudo >> Version 1.6.3_p2

Todd_miller>>Sudo >> Version 1.6.3_p3

Todd_miller>>Sudo >> Version 1.6.3_p4

Todd_miller>>Sudo >> Version 1.6.3_p5

Todd_miller>>Sudo >> Version 1.6.3_p6

Todd_miller>>Sudo >> Version 1.6.3_p7

Todd_miller>>Sudo >> Version 1.6.3p1

Todd_miller>>Sudo >> Version 1.6.3p2

Todd_miller>>Sudo >> Version 1.6.3p3

Todd_miller>>Sudo >> Version 1.6.3p4

Todd_miller>>Sudo >> Version 1.6.3p5

Todd_miller>>Sudo >> Version 1.6.3p6

Todd_miller>>Sudo >> Version 1.6.3p7

Todd_miller>>Sudo >> Version 1.6.4

Todd_miller>>Sudo >> Version 1.6.4_p1

Todd_miller>>Sudo >> Version 1.6.4_p2

Todd_miller>>Sudo >> Version 1.6.4p1

Todd_miller>>Sudo >> Version 1.6.4p2

Todd_miller>>Sudo >> Version 1.6.5

Todd_miller>>Sudo >> Version 1.6.5_p1

Todd_miller>>Sudo >> Version 1.6.5_p2

Todd_miller>>Sudo >> Version 1.6.5p1

Todd_miller>>Sudo >> Version 1.6.5p2

Todd_miller>>Sudo >> Version 1.6.6

Todd_miller>>Sudo >> Version 1.6.7

Todd_miller>>Sudo >> Version 1.6.7_p5

Todd_miller>>Sudo >> Version 1.6.7p1

Todd_miller>>Sudo >> Version 1.6.7p2

Todd_miller>>Sudo >> Version 1.6.7p3

Todd_miller>>Sudo >> Version 1.6.7p4

Todd_miller>>Sudo >> Version 1.6.7p5

Todd_miller>>Sudo >> Version 1.6.8

Todd_miller>>Sudo >> Version 1.6.8_p1

Todd_miller>>Sudo >> Version 1.6.8_p2

Todd_miller>>Sudo >> Version 1.6.8_p5

Todd_miller>>Sudo >> Version 1.6.8_p7

Todd_miller>>Sudo >> Version 1.6.8_p8

Todd_miller>>Sudo >> Version 1.6.8_p9

Todd_miller>>Sudo >> Version 1.6.8_p12

Todd_miller>>Sudo >> Version 1.6.8p1

Todd_miller>>Sudo >> Version 1.6.8p2

Todd_miller>>Sudo >> Version 1.6.8p3

Todd_miller>>Sudo >> Version 1.6.8p4

Todd_miller>>Sudo >> Version 1.6.8p5

Todd_miller>>Sudo >> Version 1.6.8p6

Todd_miller>>Sudo >> Version 1.6.8p7

Todd_miller>>Sudo >> Version 1.6.8p8

Todd_miller>>Sudo >> Version 1.6.8p9

Todd_miller>>Sudo >> Version 1.6.8p10

Todd_miller>>Sudo >> Version 1.6.8p11

Todd_miller>>Sudo >> Version 1.6.8p12

Todd_miller>>Sudo >> Version 1.6.9

Todd_miller>>Sudo >> Version 1.6.9_p17

Todd_miller>>Sudo >> Version 1.6.9_p18

Todd_miller>>Sudo >> Version 1.6.9_p19

Todd_miller>>Sudo >> Version 1.6.9_p20

Todd_miller>>Sudo >> Version 1.6.9_p21

Todd_miller>>Sudo >> Version 1.6.9_p22

Todd_miller>>Sudo >> Version 1.6.9p1

Todd_miller>>Sudo >> Version 1.6.9p2

Todd_miller>>Sudo >> Version 1.6.9p3

Todd_miller>>Sudo >> Version 1.6.9p4

Todd_miller>>Sudo >> Version 1.6.9p5

Todd_miller>>Sudo >> Version 1.6.9p6

Todd_miller>>Sudo >> Version 1.6.9p7

Todd_miller>>Sudo >> Version 1.6.9p8

Todd_miller>>Sudo >> Version 1.6.9p9

Todd_miller>>Sudo >> Version 1.6.9p10

Todd_miller>>Sudo >> Version 1.6.9p11

Todd_miller>>Sudo >> Version 1.6.9p12

Todd_miller>>Sudo >> Version 1.6.9p13

Todd_miller>>Sudo >> Version 1.6.9p14

Todd_miller>>Sudo >> Version 1.6.9p15

Todd_miller>>Sudo >> Version 1.6.9p16

Todd_miller>>Sudo >> Version 1.6.9p17

Todd_miller>>Sudo >> Version 1.6.9p18

Todd_miller>>Sudo >> Version 1.6.9p19

Todd_miller>>Sudo >> Version 1.6.9p20

Todd_miller>>Sudo >> Version 1.6.9p21

Todd_miller>>Sudo >> Version 1.6.9p22

Todd_miller>>Sudo >> Version 1.6.9p23

Todd_miller>>Sudo >> Version 1.7.0

Todd_miller>>Sudo >> Version 1.7.1

Todd_miller>>Sudo >> Version 1.7.2

Todd_miller>>Sudo >> Version 1.7.2p1

Todd_miller>>Sudo >> Version 1.7.2p2

Todd_miller>>Sudo >> Version 1.7.2p3

Todd_miller>>Sudo >> Version 1.7.2p4

Todd_miller>>Sudo >> Version 1.7.2p5

Todd_miller>>Sudo >> Version 1.7.2p6

Todd_miller>>Sudo >> Version 1.7.2p7

Todd_miller>>Sudo >> Version 1.7.3b1

Todd_miller>>Sudo >> Version 1.7.4

Todd_miller>>Sudo >> Version 1.7.4p1

Todd_miller>>Sudo >> Version 1.7.4p2

Todd_miller>>Sudo >> Version 1.7.4p3

Todd_miller>>Sudo >> Version 1.7.4p4

Redhat>>Fedora >> Version 14

References

http://www.mandriva.com/security/advisories?name=MDVSA-2011:018
Tags : vendor-advisory, x_refsource_MANDRIVA
http://www.vupen.com/english/advisories/2011/0199
Tags : vdb-entry, x_refsource_VUPEN
http://www.vupen.com/english/advisories/2011/0195
Tags : vdb-entry, x_refsource_VUPEN
http://secunia.com/advisories/42968
Tags : third-party-advisory, x_refsource_SECUNIA