Warning: Critical privilege escalation vulnerability in sudo, Patch Immediately!
ID: 7da284dd-0ad5-5470-aab5-f3195cc8b228
STIX ID: report--7da284dd-0ad5-5470-aab5-f3195cc8b228
Threat Score
Sudo versions 1.9.14–1.9.17 contain CVE-2025-32463, a high-severity (CVSS 9.3) chroot-related flaw that allows an attacker to trick sudo into loading arbitrary shared libraries via a user-specified root directory, enabling privilege escalation to root even for non-sudoers; CISA has added the CVE to its Known Exploited Vulnerabilities catalog and a public PoC exists, so immediate patching and detection are strongly recommended.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
