Bug 12261

Summary: sudo versions prior to 1.8.28 are affected.
Product: buildroot Reporter: Francis Hu <francisjy.hu>
Component: OtherAssignee: unassigned
Status: RESOLVED FIXED    
Severity: critical CC: buildroot
Priority: P5    
Version: unspecified   
Target Milestone: ---   
Hardware: All   
OS: Linux   
Host: Target:
Build:

Description Francis Hu 2019-10-16 02:35:22 UTC
According to sudo.ws, sudo versions prior to 1.8.28 are affected due to potential bypass of Runas user restrictions.
Please refer to https://www.sudo.ws/alerts/minus_1_uid.html for the detailed.
Comment 1 Alexander Dahl 2019-10-16 06:23:39 UTC
This was already fixed in buildroot master yesterday: https://git.buildroot.net/buildroot/commit/?id=4a96d627491dbf1ae622053068176ec27d3cdf60