Control: tags -1 + fixed-upstream

Hi,

On Thu, Nov 19, 2015 at 03:47:53PM +0100, Salvatore Bonaccorso wrote:
> Source: sudo
> Version: 1.8.7-1
> Severity: important
> Tags: security upstream
> 
> Hi,
> 
> the following vulnerability was published for sudo, no upstream fix
> available TTBOMK at the time of writing.
> 
> CVE-2015-8239[0]:
> race condition checking digests/checksums in sudoers
> 
> If you fix the vulnerability please also make sure to include the
> CVE (Common Vulnerabilities & Exposures) id in your changelog entry.

This issue seems to have been addressed in upstream version 1.8.16:

https://www.sudo.ws/stable.html#1.8.16

Regards,
Salvatore

Reply via email to