CVE-2005-2959

Source
https://cve.org/CVERecord?id=CVE-2005-2959
Import Source
https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2005-2959.json
JSON Data
https://api.osv.dev/v1/vulns/CVE-2005-2959
Downstream
Published
2005-10-25T16:02:00Z
Modified
2026-04-10T03:38:12.533007Z
Summary
[none]
Details

Incomplete blacklist vulnerability in sudo 1.6.8 and earlier allows local users to gain privileges via the (1) SHELLOPTS and (2) PS4 environment variables before executing a bash script on behalf of another user, which are not cleared even though other variables are.

References

Affected packages