It was discovered that Sudo incorrectly checked return codes when dropping privileges to run the mailer. A local attacker could possibly use this issue to escalate privileges.
{
"availability": "No subscription required",
"binaries": [
{
"binary_version": "1.9.15p5-3ubuntu5.24.04.2",
"binary_name": "libnss-sudo"
},
{
"binary_version": "1.9.15p5-3ubuntu5.24.04.2",
"binary_name": "sudo"
},
{
"binary_version": "1.9.15p5-3ubuntu5.24.04.2",
"binary_name": "sudo-ldap"
}
]
}