[ubuntu/resolute-updates] sudo 1.9.17p2-1ubuntu3.1 (Accepted)

Ubuntu Archive Robot ubuntu-archive-robot at lists.canonical.com
Tue Sep 22 17:05:34 UTC 2026


sudo (1.9.17p2-1ubuntu3.1) resolute-security; urgency=medium

  * SECURITY UPDATE: intercept and log_subcmds bypass via execveat(2)
    - debian/patches/CVE-2026-82474-pre1.patch: resolve /proc/self/fd/N
      pathname in get_execve_info().
    - debian/patches/CVE-2026-82474-pre2.patch: pass correct name to
      proc_read_link().
    - debian/patches/CVE-2026-82474.patch: add intercept and log_subcmds
      support for execveat(2).
    - debian/patches/CVE-2026-82474-2.patch: error out if we run out of
      space rewriting pathname.
    - debian/patches/CVE-2026-82474-3.patch: fix handling of relative paths
      in the execveat(2) intercept support.
    - CVE-2026-82474

Date: 2026-09-21 18:46:10.982395+00:00
Changed-By: John Breton <john.breton at canonical.com>
Signed-By: Ubuntu Archive Robot <ubuntu-archive-robot at lists.canonical.com>
https://launchpad.net/ubuntu/+source/sudo/1.9.17p2-1ubuntu3.1
-------------- next part --------------
Sorry, changesfile not available.


More information about the Resolute-changes mailing list