[Buildroot] [PATCH] package/sudo: security bump to version 1.8.28

Peter Korsgaard peter at korsgaard.com
Tue Oct 29 10:51:12 UTC 2019


>>>>> "Baruch" == Baruch Siach <baruch at tkos.co.il> writes:

 > Fixes CVE-2019-14287: a sudo user may be able to run a command as root
 > when the Runas specification explicitly disallows root access as long as
 > the ALL keyword is listed first.

 > Signed-off-by: Baruch Siach <baruch at tkos.co.il>

Committed to 2019.02.x and 2019.08.x, thanks.

-- 
Bye, Peter Korsgaard



More information about the buildroot mailing list