CVE: CVE-2005-2959

Export to Word

Incomplete blacklist vulnerability in sudo 1.6.8 and earlier allows local users to gain privileges via the (1) SHELLOPTS and (2) PS4 environment variables before executing a bash script on behalf of another user, which are not cleared even though other variables are.

Threat-Mapped Scoring

Score: 0.0

Priority: Unclassified

EPSS

Score: 0.00097
Percentile: 0.27964

CVSS Scoring

CVSS v2 Score: 4.6

Severity:

Affected Products

← Back to Home