• Skip to main content
  • Skip to header right navigation
  • Skip to site footer
iGuRu

iGuRu

Real-time Technology News. Opinions & Tweaks

  • / news
  • / infosec
  • / tools
  • / tweaks
  • / dummies
  • / opinions
  • / support
home / News / Sudo upgrade the micro-application immediately

Sudo upgrade the micro-application immediately

27/01/2021 07:35 by giorgos

A major security breach affecting the Linux ecosystem was fixed overnight in Sudo, an application that allows administrators to grant restricted root access to other users.

The vulnerability, which has as its identifier the CVE-2021-3156, better known as "Baron Samedit", was discovered by security company Qualys two weeks ago. Fixed last night with the release of Sudo v1.9.5p2 (update immediately).Penguins - Sudo upgrade the micro-application immediately

In a simple explanation provided by the Sudo team, Baron Samedit error can be exploited by an attacker who has access to a low privileged account to gain root access, even if the account is not listed in / etc / sudoers - a configuration file that controls which users are allowed access to the su or sudo commands.

For technical details see reference Qualys or the video below.

While two other Sudo security vulnerabilities have been uncovered in the last two years, the error being uncovered today is far more dangerous.

The two previous bugs, CVE-2019-14287 and CVE-2019-18634, were difficult to exploit because they required complex and non-standard sudo settings.

Things are different for the bug revealed today, because it affects all Sudo installations where there are sudoers (/ etc / sudoers) - which is usually found on most default Linux installations - Sudo.

Sudo upgrade the micro-application immediately was last modified: 27 January, 2021, 7: 35 am by giorgos

Subscribe to our newsletter

no spam

spread the news

  • Facebook
  • Twitter
  • Reddit
  • Printing
  • Email

Read them Technology News from all over the world, with the validity of iGuRu.gr

Follow us on Google News


Competition: NewsDay: linux, sudo

You May Also Like

Ubuntu 21.04 (Hirsute Hippo) Feature Freeze
DDOS driver on WiFi network
Kali Linux 2021.1 has just been released

About Us giorgos

George still wonders what he's doing here ...

Previous Post: « Chrome will no longer hide web alerts
Next Post: iOS 14.4 update immediately (3 security vulnerabilities) »

Reader Interactions

Comment Policy:

IGuRu.gr does not publish the comments immediately. Malicious comments, comments that include ads, or comments that are offensive are deleted without notice. We do not adopt the opinions expressed by our readers.
Your comments will be displayed after approval by the administrators


Leave your comment
Ακύρωση απάντησης

Your email address is not published. Τα υποχρεωτικά πεδία σημειώνονται με *

 

 © 2021 · iGuRu.gr · ☢ · Keep It Simple Stupid Genesis theme

about  ·   get in touch  ·  rss  ·  sitemap  ·  cough

loadingCancel
Could not post post - check your email address!
Email verification failed, please try again
Your blog can not post posts via email.