sudo-1.8.23-10.3.0.3.el7.AXS7

エラータID: AXSA:2025-10546:02

リリース日: 
2025/07/22 Tuesday - 18:02
題名: 
sudo-1.8.23-10.3.0.3.el7.AXS7
影響のあるチャネル: 
Asianux Server 7 for x86_64
Severity: 
High
Description: 

Sudo (superuser do) allows a system administrator to give certain
users (or groups of users) the ability to run some (or all) commands
as root while logging all commands and arguments. Sudo operates on a
per-command basis. It is not a replacement for the shell. Features
include: the ability to restrict what commands a user may run on a
per-host basis, copious logging of each command (providing a clear
audit trail of who did what), a configurable timeout of the sudo
command, and the ability to use the same configuration file (sudoers)
on many different machines.

Security Fix(es):

* CVE-2025-32462: fix privilege escalation vulnerability by restricting
unauthorized users from gaining elevated system privileges via the Sudo host
option

CVE(s):
CVE-2025-32462
Sudo before 1.9.17p1, when used with a sudoers file that specifies a host that is neither the current host nor ALL, allows listed users to execute commands on unintended machines.

解決策: 

Update packages.

追加情報: 

N/A

ダウンロード: 

Asianux Server 7 for x86_64
  1. sudo-1.8.23-10.3.0.3.el7.AXS7.x86_64.rpm
    MD5: 28a57ca804f2dd71068f49f08310b5ad
    SHA-256: d4ac55ddc28dd86ee02dbaa511a211c364ea35c1122b1cac6bc4cca1d0aecbaa
    Size: 845.03 kB