Import Source
https://github.com/microsoft/AzureLinuxVulnerabilityData/blob/main/osv/AZL-98225.json
JSON Data
https://api.osv.dev/v1/vulns/AZL-98225
Upstream
Published
2026-08-29T17:17:59Z
Modified
2026-08-30T14:17:22.825117136Z
Summary
CVE-2026-82474 affecting package sudo 1.9.17-2
Details

Sudo through 1.9.17p2 fails to apply intercept policy checks to the execveat system call in ptrace-based intercept mode. Users permitted to run specific commands can execute denied programs by calling execveat directly or through fexecve, bypassing policy enforcement and logging.

References

Affected packages

Azure Linux:3 / sudo

Package

Name
sudo
Purl
pkg:rpm/azure-linux/sudo

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Last affected
1.9.17-2

Database specific

source
"https://github.com/microsoft/AzureLinuxVulnerabilityData/blob/main/osv/AZL-98225.json"