Todd Miller's sudo version 1.8.20 and earlier is vulnerable to an input validation (embedded spaces) in the get_process_ttyname() function resulting in information disclosure and command execution.
                
            References
                    Configurations
                    History
                    No history.
Information
                Published : 2017-06-05 14:29
Updated : 2025-04-20 01:37
NVD link : CVE-2017-1000367
Mitre link : CVE-2017-1000367
CVE.ORG link : CVE-2017-1000367
JSON object : View
Products Affected
                sudo_project
- sudo
CWE
                
                    
                        
                        CWE-362
                        
            Concurrent Execution using Shared Resource with Improper Synchronization ('Race Condition')
