[CLSA-2026:1790601136] sudo: Fix of 7 CVEs
Type:
security
Severity:
None
Release date:
2026-09-29 17:58:30 UTC
Description:
- Rebase onto the vendor's sudo-1.8.23-10.0.3.el7_9.3 sources - CVE-2025-32462: take the vendor's fix, keep our audit record of the rejected remote host - CVE-2026-35535 is now fixed by the vendor (sudo-1.8.23-CVE-2026-35535.patch); the TuxCare duplicate is dropped - Retained TuxCare fixes: CVE-2021-23239, CVE-2021-23240, CVE-2023-28486, CVE-2023-28487, CVE-2023-42465
Updated packages:
  • sudo-1.8.23-10.0.3.el7_9.3.tuxcare.els1.i686.rpm
    sha:75130afb26de8370469b14316d43a33a629c092cc0e285d44f9d2caae6eb9094
  • sudo-1.8.23-10.0.3.el7_9.3.tuxcare.els1.x86_64.rpm
    sha:3a75f723625fdcdd0ec1e334467cde012948e1462b20b9a9283fb96af3e15b33
  • sudo-devel-1.8.23-10.0.3.el7_9.3.tuxcare.els1.i686.rpm
    sha:74ee645a62cecfcb1a0a329b7a6c4c53700e0426db8063dac6b1831147a4b3fc
  • sudo-devel-1.8.23-10.0.3.el7_9.3.tuxcare.els1.x86_64.rpm
    sha:ed4b294571a9ef968840280f9551381e977b0770e1f30a93c718d893e8784ac5
Notes:
This page is generated automatically and has not been checked for errors. For clarification or corrections please contact the CloudLinux Packaging Team.