Several major Linux distros hit by serious Sudo security flaws
- Two flaws were first introduced in late 2013
- They reside in the Sudo command-line utility
- Patches are available and users are advised to apply them
Two vulnerabilities were recently spotted in various Linux distributions which, when chained together, allow local attackers to escalate their privileges and thus run arbitrary files.
The vulnerabilities are tracked as CVE-2025-32462 (severity score 2.8/10 – low severity), and CVE-2025-32463 (severity score 9.3/10 critical), and were found in the Sudo command-line utility for Linux and other Unix-like operating systems.
All versions before 1.9.17p1 were said to be vulnerable, with Rich Mirch, the Stratascale researcher who found the flaws, saying they were lingering for more than a decade before being discovered. They were first introduced in late 2013, he added.
A decade-old flaw
Sudo (short for “superuser do”) is a command that allows a permitted user to execute a command as the root user or another user, as defined in the system’s security policy. It provides controlled administrative access without requiring users to log in as the root account.
For example, a user might run a sudo command that installs Firefox on Ubuntu, since installing software system-wide usually requires administrative privileges.
“This primarily affects sites that use a common sudoers file that is distributed to multiple machines,” Todd C. Miller, a maintainer for the Sudo project, said in an advisory. “Sites that use LDAP-based sudoers (including SSSD) are similarly impacted.”
The patch for Sudo was released in late June 2024, after responsible disclosure which happened in early April.
Sign up to the TechRadar Pro newsletter to get all the top news, opinion, features and guidance your business needs to succeed!
Furthermore, different Linux distributions also released advisories, fixing the flaw for their variant of the OS. For CVE-2025-32462, these include AlmaLinux 8, AlmaLinux 9, Alpine Linux, Amazon Linux, Debian, Gentoo, Oracle Linux, Red Hat, SUSE, and Ubuntu, while for CVE-2025-32463, they include Alpine Linux, Amazon Linux, Debian, Gentoo, Red Hat, SUSE, and Ubuntu.
Linux users are advised to apply the available patches and make sure their Linux desktop distributions are generally updated.
Via The Hacker News
You might also like
Two flaws were first introduced in late 2013 They reside in the Sudo command-line utility Patches are available and users are advised to apply them Two vulnerabilities were recently spotted in various Linux distributions which, when chained together, allow local attackers to escalate their privileges and thus run arbitrary files.…
Recent Posts
- Shokz upgraded its open earbuds with better sound and a lighter design
- Shokz says its clip-on OpenDots 2 earbuds focus on improved volume and bass
- How to watch England vs New Zealand: TV Channels, Full Schedule & 1st Test Preview
- Nomad Goods Promo Codes: Get 25% Off in June 2026
- NordVPN Coupons and Deals: 77% Off in June 2026
Archives
- June 2026
- May 2026
- April 2026
- March 2026
- February 2026
- January 2026
- December 2025
- November 2025
- October 2025
- September 2025
- August 2025
- July 2025
- June 2025
- May 2025
- April 2025
- March 2025
- February 2025
- January 2025
- December 2024
- November 2024
- October 2024
- September 2024
- August 2024
- July 2024
- June 2024
- May 2024
- April 2024
- March 2024
- February 2024
- January 2024
- December 2023
- November 2023
- October 2023
- September 2023
- August 2023
- July 2023
- June 2023