Description

Sudo before 1.9.17p1 allows local users to obtain root access because /etc/nsswitch.conf from a user-controlled directory is used with the --chroot option.

INFO

Published Date :

2025-06-30T00:00:00.000Z

Last Modified :

2026-02-26T17:50:20.931Z

Source :

mitre
AFFECTED PRODUCTS

The following products are affected by CVE-2025-32463 vulnerability.

Vendors Products
Canonical
  • Ubuntu Linux
Debian
  • Debian Linux
Opensuse
  • Leap
Redhat
  • Enterprise Linux
Sudo Project
  • Sudo
Suse
  • Linux Enterprise Desktop
  • Linux Enterprise Real Time
  • Linux Enterprise Server For Sap

CVSS Vulnerability Scoring System

Detailed values of each vector for above chart.
Attack Vector
Attack Complexity
Privileges Required
User Interaction
Scope
Confidentiality Impact
Integrity Impact
Availability Impact