CISA Known Exploited Vulnerability

CVE-2021-3156

Sudo · Sudo

Sudo Heap-Based Buffer Overflow Vulnerability

Date added
BOD 22-01 due date
CWE CWE-122, CWE-193
Ransomware Unknown

CISA description

Sudo contains an off-by-one error that can result in a heap-based buffer overflow, which allows for privilege escalation.

Required action

Apply updates per vendor instructions.