Shodan
Maps
Images
Monitor
Developer
More...
Dashboard
View Api Docs
Vulnerabilities
By Date
Known Exploited
Advanced Search
Vulnerable Software
Vendors
Products
Vulnerability Details CVE-2025-32463
Sudo before 1.9.17p1 allows local users to obtain root access because /etc/nsswitch.conf from a user-controlled directory is used with the --chroot option.
Exploit prediction scoring system (EPSS) score
EPSS Score
0.003
EPSS Ranking
50.2%
CVSS Severity
CVSS v3 Score
9.3
References
https://access.redhat.com/security/cve/cve-2025-32463
https://bugs.gentoo.org/show_bug.cgi?id=CVE-2025-32463
https://explore.alas.aws.amazon.com/CVE-2025-32463.html
https://security-tracker.debian.org/tracker/CVE-2025-32463
https://ubuntu.com/security/notices/USN-7604-1
https://www.openwall.com/lists/oss-security/2025/06/30/3
https://www.secpod.com/blog/sudo-lpe-vulnerabilities-resolved-what-you-need-to-know-about-cve-2025-32462-and-cve-2025-32463/
https://www.stratascale.com/vulnerability-alert-CVE-2025-32463-sudo-chroot
https://www.sudo.ws/releases/changelog/
https://www.sudo.ws/security/advisories/
https://www.suse.com/security/cve/CVE-2025-32463.html
https://www.suse.com/support/update/announcement/2025/suse-su-202502177-1/
Products affected by CVE-2025-32463
Sudo Project
»
Sudo
»
Version:
1.9.14
cpe:2.3:a:sudo_project:sudo:1.9.14
Sudo Project
»
Sudo
»
Version:
1.9.15
cpe:2.3:a:sudo_project:sudo:1.9.15
Sudo Project
»
Sudo
»
Version:
1.9.17
cpe:2.3:a:sudo_project:sudo:1.9.17
Canonical
»
Ubuntu Linux
»
Version:
22.04
cpe:2.3:o:canonical:ubuntu_linux:22.04
Canonical
»
Ubuntu Linux
»
Version:
24.04
cpe:2.3:o:canonical:ubuntu_linux:24.04
Canonical
»
Ubuntu Linux
»
Version:
24.10
cpe:2.3:o:canonical:ubuntu_linux:24.10
Canonical
»
Ubuntu Linux
»
Version:
25.04
cpe:2.3:o:canonical:ubuntu_linux:25.04
Debian
»
Debian Linux
»
Version:
11.0
cpe:2.3:o:debian:debian_linux:11.0
Debian
»
Debian Linux
»
Version:
12.0
cpe:2.3:o:debian:debian_linux:12.0
Debian
»
Debian Linux
»
Version:
13.0
cpe:2.3:o:debian:debian_linux:13.0
Opensuse
»
Leap
»
Version:
15.6
cpe:2.3:o:opensuse:leap:15.6
Redhat
»
Enterprise Linux
»
Version:
10.0
cpe:2.3:o:redhat:enterprise_linux:10.0
Suse
»
Linux Enterprise Desktop
»
Version:
15
cpe:2.3:o:suse:linux_enterprise_desktop:15
Suse
»
Linux Enterprise Real Time
»
Version:
15.0
cpe:2.3:o:suse:linux_enterprise_real_time:15.0
Suse
»
Linux Enterprise Server For Sap
»
Version:
12
cpe:2.3:o:suse:linux_enterprise_server_for_sap:12
Products
Monitor
Search Engine
Developer API
Maps
Bulk Data
Images
Snippets
Pricing
Membership
API Subscriptions
Enterprise
Contact Us
support@shodan.io
Shodan ® - All rights reserved