CVE-2010-2956

Source
https://cve.org/CVERecord?id=CVE-2010-2956
Import Source
https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2010-2956.json
JSON Data
https://api.osv.dev/v1/vulns/CVE-2010-2956
Downstream
Published
2010-09-10T19:00:02Z
Modified
2026-04-10T03:41:22.148347Z
Summary
[none]
Details

Sudo 1.7.0 through 1.7.4p3, when a Runas group is configured, does not properly handle use of the -u option in conjunction with the -g option, which allows local users to gain privileges via a command line containing a "-u root" sequence.

References

Affected packages