SUSE update for sudo
Secunia Advisory: SA15807
Release Date: 2005-06-24
Popularity: 6,650 views

Critical:
Less critical
Impact: Security Bypass
Where: Local system
Solution Status: Vendor Patch

OS:SuSE Linux 8.x
SuSE Linux 9.0
SuSE Linux 9.1
SUSE Linux 9.2
SUSE Linux 9.3

Subscribe: Instant alerts on relevant vulnerabilities

CVE reference:CVE-2005-1993


Description:
SUSE has issued an update for sudo. This fixes a vulnerability, which can be exploited by malicious, local users to execute arbitrary commands with escalated privileges.

For more information:
SA15744

Solution:
Apply updated packages.

-- x86 Platform --

SUSE Linux 9.3:
ftp://ftp.suse.com/pub/suse/i386/upda....rpm b66d5d132049853629a3bcac6ccab485
patch rpm(s):
ftp://ftp.suse.com/pub/suse/i386/upda....rpm 0be64a8e4904a4d291d8829f6b6041c6
source rpm(s):
ftp://ftp.suse.com/pub/suse/i386/upda....rpm a069125224a78bc300fcd4dcb96e40d3

SUSE Linux 9.2:
ftp://ftp.suse.com/pub/suse/i386/upda....rpm 33bc6c32f618d10f577dab89ea99ece6
patch rpm(s):
ftp://ftp.suse.com/pub/suse/i386/upda....rpm 760a5affabbaa042f4415bbefd6e368e
source rpm(s):
ftp://ftp.suse.com/pub/suse/i386/upda....rpm e9e3038d21f011fadc8699edd3eeb8cc

SUSE Linux 9.1:
ftp://ftp.suse.com/pub/suse/i386/upda....rpm a38b0526a497306827d0c80c944cbb29
patch rpm(s):
ftp://ftp.suse.com/pub/suse/i386/upda....rpm 22199f86b112264ca314089bebedfac7
source rpm(s):
ftp://ftp.suse.com/pub/suse/i386/upda....rpm ad22ffaf4a001e9a5de6a9c619098b15

SUSE Linux 9.0:
ftp://ftp.suse.com/pub/suse/i386/upda....rpm d6f2c65abb6ac1ffc869427a261e1c35
patch rpm(s):
ftp://ftp.suse.com/pub/suse/i386/upda....rpm cad88b3e9619781af28f2505ac398722
source rpm(s):
ftp://ftp.suse.com/pub/suse/i386/upda....rpm 1fa8cd28e9c07bbd88674656b8847939

SUSE Linux 8.2:
ftp://ftp.suse.com/pub/suse/i386/upda....rpm aa1a93a017259335bbf87eda21b5e45b
patch rpm(s):
ftp://ftp.suse.com/pub/suse/i386/upda....rpm b507d49bc18be0f2c3c70f41f15f1849
source rpm(s):
ftp://ftp.suse.com/pub/suse/i386/upda....rpm cb3baefafd723842bd9b549762bf68a9

-- x86-64 Platform --

SUSE Linux 9.3:
ftp://ftp.suse.com/pub/suse/x86_64/up....rpm f4cad71e54f0f56b9fd5257228d3e94d
patch rpm(s):
ftp://ftp.suse.com/pub/suse/x86_64/up....rpm ac400e62fe3ce21ac7aa6a5e0da79977
source rpm(s):
ftp://ftp.suse.com/pub/suse/x86_64/up....rpm a069125224a78bc300fcd4dcb96e40d3

SUSE Linux 9.2:
ftp://ftp.suse.com/pub/suse/x86_64/up....rpm 1dea5ee72634fae4c9124fe5926874f4
patch rpm(s):
ftp://ftp.suse.com/pub/suse/x86_64/up....rpm eb9db1ea2a1cd7bb3923c4d59774b965
source rpm(s):
ftp://ftp.suse.com/pub/suse/x86_64/up....rpm e9e3038d21f011fadc8699edd3eeb8cc

SUSE Linux 9.1:
ftp://ftp.suse.com/pub/suse/x86_64/up....rpm d3890913e3fb16ef2899aa681d645de0
patch rpm(s):
ftp://ftp.suse.com/pub/suse/x86_64/up....rpm fee49fd93b75174c7229fde365fbed74
source rpm(s):
ftp://ftp.suse.com/pub/suse/x86_64/up....rpm b0b4cdd3765249f8f4f80ed17f182259

SUSE Linux 9.0:
ftp://ftp.suse.com/pub/suse/x86_64/up....rpm f110cef5bb1fba01340235e035d56294
patch rpm(s):
ftp://ftp.suse.com/pub/suse/x86_64/up....rpm 1bfecf26f55a8297d75ff8123ee48f59
source rpm(s):
ftp://ftp.suse.com/pub/suse/x86_64/up....rpm 89a5bcdc68a459b54be612c26bcd1250

Original Advisory:
http://www.novell.com/linux/security/advisories/2005_36_sudo.html

Other References:
SA15744:
http://secunia.com/advisories/15744/


Track this Secunia Advisory
Customers of the Secunia Vulnerability Intelligence solutions will automatically receive updates when new information regarding this advisory is released.

Read more about our Vulnerability Intelligence solutions and what they can do for you and your company.

About this Secunia Advisory
Please note: The information that this Secunia Advisory is based on comes from a third party unless stated otherwise.

Secunia collects, validates, and verifies all vulnerability reports issued by security research groups, vendors, and others.
  
Latest Advisories

Send Feedback to Secunia
If you have new information regarding this Secunia advisory or a product in our database, please send it to us using either our web form or email us at vuln@secunia.com.

Ideas, suggestions, and other feedback are most welcome.

Most Popular - 3 Hours

1. Microsoft Word Malformed Object Pointer Vulnerability // 18 views
2. PHP Multiple Vulnerabilities // 18 views
3. phpBB BBcode Script Insertion Vulnerability // 17 views
4. PluggedOut Blog "index.php" SQL Injection Vulnerabilities // 17 views
5. Microsoft Office Two Code Execution Vulnerabilities // 16 views
6. phpBB Cross Site Scripting and Unspecified Vulnerabilities // 14 views
7. Fedora update for xastir // 13 views
8. PHP "gdPngReadData()" Truncated PNG Data Denial of Service // 13 views
9. 3Com Wireless 8760 Access Point HTTP Request Processing Denial of Service // 11 views
10. Drupal Content Construction Kit Script Insertion Vulnerabilities // 11 views