This bug was fixed in the package sudo - 1.9.17p2-1ubuntu1.1
---------------
sudo (1.9.17p2-1ubuntu1.1) questing-security; urgency=medium
* SECURITY UPDATE: exec_mailer gid issue (LP: #2143042)
- debian/patches/lp2143042.patch: set group as well as uid when running
the mailer and make a setuid(), setgid() or setgroups() failure fatal
in include/sudo_eventlog.h, lib/eventlog/eventlog.c,
lib/eventlog/eventlog_conf.c, plugins/sudoers/logging.c,
plugins/sudoers/policy.c.
- No CVE number
-- Marc Deslauriers <[email protected]> Mon, 02 Mar 2026
07:52:23 -0500
** Changed in: sudo (Ubuntu)
Status: New => Fix Released
** Changed in: sudo (Ubuntu)
Status: New => Fix Released
--
You received this bug notification because you are a member of Ubuntu
Bugs, which is subscribed to Ubuntu.
https://bugs.launchpad.net/bugs/2143042
Title:
exec_mailer: Set group as well as uid when running the mailer
To manage notifications about this bug go to:
https://bugs.launchpad.net/ubuntu/+source/sudo/+bug/2143042/+subscriptions
--
ubuntu-bugs mailing list
[email protected]
https://lists.ubuntu.com/mailman/listinfo/ubuntu-bugs