Loading market data...
← Back to CVE feed

CVE-2026-82474

HIGH CVSS 7.8 View on NVD ↗

Description

Sudo through 1.9.17p2 fails to apply intercept policy checks to the execveat system call in ptrace-based intercept mode. Users permitted to run specific commands can execute denied programs by calling execveat directly or through fexecve, bypassing policy enforcement and logging.

CVSS Vector

CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
Published: Aug 29, 2026 17:17 UTC Modified: Aug 29, 2026 17:17 UTC