CVE-2026-82474 - Sudo through 1.9.17p2 Intercept Policy Bypass via execveat
CVE ID :CVE-2026-82474
Published : Aug. 29, 2026, 5:17 p.m. | 1 hour, 12 minutes ago
Description :Sudo through 1.9.17p2 fails to apply intercept policy checks to the execveat system call in ptrace-based intercept mode. Users permitted to run specific commands can execute denied programs by calling execveat directly or through fexecve, bypassing policy enforcement and logging.
Severity: 8.5 | HIGH
Visit the link for more details, such as CVSS details, affected products, timeline, and more...
Published : Aug. 29, 2026, 5:17 p.m. | 1 hour, 12 minutes ago
Description :Sudo through 1.9.17p2 fails to apply intercept policy checks to the execveat system call in ptrace-based intercept mode. Users permitted to run specific commands can execute denied programs by calling execveat directly or through fexecve, bypassing policy enforcement and logging.
Severity: 8.5 | HIGH
Visit the link for more details, such as CVSS details, affected products, timeline, and more...