Sudo through 1.9.17p2 fails to apply intercept policy checks to the execveat system call in ptrace-based intercept mode. Users permitted to run specific commands can execute denied programs by calling execveat directly or through fexecve, bypassing policy enforcement and logging.
Advisories
No advisories yet.
Fixes
Solution
No solution given by the vendor.
Workaround
No workaround given by the vendor.
References
History
Sat, 29 Aug 2026 16:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | Sudo through 1.9.17p2 fails to apply intercept policy checks to the execveat system call in ptrace-based intercept mode. Users permitted to run specific commands can execute denied programs by calling execveat directly or through fexecve, bypassing policy enforcement and logging. | |
| Title | Sudo through 1.9.17p2 Intercept Policy Bypass via execveat | |
| First Time appeared |
Sudo Project
Sudo Project sudo |
|
| Weaknesses | CWE-693 | |
| CPEs | cpe:2.3:a:sudo_project:sudo:*:*:*:*:*:*:*:* | |
| Vendors & Products |
Sudo Project
Sudo Project sudo |
|
| References |
| |
| Metrics |
cvssV3_1
|
Projects
Sign in to view the affected projects.
Status: PUBLISHED
Assigner: VulnCheck
Published:
Updated: 2026-08-29T16:35:33.836Z
Reserved: 2026-08-29T14:11:14.262Z
Link: CVE-2026-82474
No data.
Status : Received
Published: 2026-08-29T17:17:59.910
Modified: 2026-08-29T17:17:59.910
Link: CVE-2026-82474
No data.
OpenCVE Enrichment
Updated: 2026-08-29T17:45:06Z
Weaknesses