Vulnerability Details CVE-2012-2337
sudo 1.6.x and 1.7.x before 1.7.9p1, and 1.8.x before 1.8.4p5, does not properly support configurations that use a netmask syntax, which allows local users to bypass intended command restrictions in opportunistic circumstances by executing a command on a host that has an IPv4 address.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.001
EPSS Ranking 23.5%
CVSS Severity
CVSS v2 Score 7.2
Products affected by CVE-2012-2337
-
cpe:2.3:a:todd_miller:sudo:1.6
-
cpe:2.3:a:todd_miller:sudo:1.6.1
-
cpe:2.3:a:todd_miller:sudo:1.6.2
-
cpe:2.3:a:todd_miller:sudo:1.6.2p3
-
cpe:2.3:a:todd_miller:sudo:1.6.3
-
cpe:2.3:a:todd_miller:sudo:1.6.3_p7
-
cpe:2.3:a:todd_miller:sudo:1.6.4
-
cpe:2.3:a:todd_miller:sudo:1.6.4p2
-
cpe:2.3:a:todd_miller:sudo:1.6.5
-
cpe:2.3:a:todd_miller:sudo:1.6.6
-
cpe:2.3:a:todd_miller:sudo:1.6.7
-
cpe:2.3:a:todd_miller:sudo:1.6.7p5
-
cpe:2.3:a:todd_miller:sudo:1.6.8
-
cpe:2.3:a:todd_miller:sudo:1.6.8p12
-
cpe:2.3:a:todd_miller:sudo:1.6.9
-
cpe:2.3:a:todd_miller:sudo:1.6.9p20
-
cpe:2.3:a:todd_miller:sudo:1.6.9p21
-
cpe:2.3:a:todd_miller:sudo:1.6.9p22
-
cpe:2.3:a:todd_miller:sudo:1.6.9p23