Sudo before 1.9.17p1 allows local users to obtain root access because /etc/nsswitch.conf from a user-controlled directory is used with the --chroot option.
{ "availability": "No subscription required", "ubuntu_priority": "high", "priority_reason": "Allows local privilege escalation", "binaries": [ { "binary_name": "libnss-sudo", "binary_version": "1.9.15p5-3ubuntu5.24.10.1" }, { "binary_name": "sudo", "binary_version": "1.9.15p5-3ubuntu5.24.10.1" }, { "binary_name": "sudo-dbgsym", "binary_version": "1.9.15p5-3ubuntu5.24.10.1" }, { "binary_name": "sudo-ldap", "binary_version": "1.9.15p5-3ubuntu5.24.10.1" }, { "binary_name": "sudo-ldap-dbgsym", "binary_version": "1.9.15p5-3ubuntu5.24.10.1" } ] }
{ "availability": "No subscription required", "ubuntu_priority": "high", "priority_reason": "Allows local privilege escalation", "binaries": [ { "binary_name": "libnss-sudo", "binary_version": "1.9.15p5-3ubuntu5.24.04.1" }, { "binary_name": "sudo", "binary_version": "1.9.15p5-3ubuntu5.24.04.1" }, { "binary_name": "sudo-dbgsym", "binary_version": "1.9.15p5-3ubuntu5.24.04.1" }, { "binary_name": "sudo-ldap", "binary_version": "1.9.15p5-3ubuntu5.24.04.1" }, { "binary_name": "sudo-ldap-dbgsym", "binary_version": "1.9.15p5-3ubuntu5.24.04.1" } ] }
{ "availability": "No subscription required", "ubuntu_priority": "high", "priority_reason": "Allows local privilege escalation", "binaries": [ { "binary_name": "libnss-sudo", "binary_version": "1.9.16p2-1ubuntu1.1" }, { "binary_name": "sudo", "binary_version": "1.9.16p2-1ubuntu1.1" }, { "binary_name": "sudo-dbgsym", "binary_version": "1.9.16p2-1ubuntu1.1" }, { "binary_name": "sudo-ldap", "binary_version": "1.9.16p2-1ubuntu1.1" }, { "binary_name": "sudo-ldap-dbgsym", "binary_version": "1.9.16p2-1ubuntu1.1" } ] }