sudo 1.9.13p1-1ubuntu2 source package in Ubuntu

Changelog

sudo (1.9.13p1-1ubuntu2) lunar; urgency=medium

  * SECURITY UPDATE: double free with per-command chroot sudoers rules
    - debian/patches/CVE-2023-27320.patch: don't free user_cmnd twice in
      MANIFEST, plugins/sudoers/match_command.c,
      plugins/sudoers/regress/fuzz/fuzz_sudoers.c,
      plugins/sudoers/regress/testsudoers/test20.out.ok,
      plugins/sudoers/regress/testsudoers/test20.sh,
      plugins/sudoers/testsudoers.c,
      plugins/sudoers/visudo.c.
    - CVE-2023-27320

 -- Marc Deslauriers <email address hidden>  Wed, 01 Mar 2023 08:51:34 -0500

Upload details

Uploaded by:
Marc Deslauriers
Uploaded to:
Lunar
Original maintainer:
Ubuntu Developers
Architectures:
any all
Section:
admin
Urgency:
Medium Urgency

See full publishing history Publishing

Series Pocket Published Component Section
Lunar release main admin

Downloads

File Size SHA-256 Checksum
sudo_1.9.13p1.orig.tar.gz 4.9 MiB 672a3b83ace56b5fa12c7d89da771d75f5ae4472bec92791fbb98c2dd853bd43
sudo_1.9.13p1.orig.tar.gz.asc 833 bytes 4d11862fc2d3bd60218f48587469e7cc7a8d2133dd8db143beef36ebcde633d7
sudo_1.9.13p1-1ubuntu2.debian.tar.xz 49.3 KiB 26e10202d70161c84c4de85ff2f37120b603473f440131dcad51851ccf458586
sudo_1.9.13p1-1ubuntu2.dsc 2.6 KiB 7475a34cca0ef49e5d979e64469c86490cdafcac5f32e79d4750d7060ec2ec2e

View changes file

Binary packages built by this source

libnss-sudo: NSS configuration for sudoers service

 This empty package provides the basic configuration needed to enable the
 `sudoers` NSS service.

sudo: Provide limited super user privileges to specific users

 Sudo is a program designed to allow a sysadmin to give limited root
 privileges to users and log root activity. The basic philosophy is to give
 as few privileges as possible but still allow people to get their work done.
 .
 This version is built with minimal shared library dependencies, use the
 sudo-ldap package instead if you need LDAP support for sudoers.

sudo-dbgsym: debug symbols for sudo
sudo-ldap: Provide limited super user privileges (with LDAP support)

 Sudo is a program designed to allow a sysadmin to give limited root
 privileges to users and log root activity. The basic philosophy is to give
 as few privileges as possible but still allow people to get their work done.
 .
 This version is built with LDAP support, which allows an equivalent of the
 sudoers database to be distributed via LDAP. Authentication is still
 performed via pam.

sudo-ldap-dbgsym: debug symbols for sudo-ldap