[CLSA-2026:1777377545] sudo: Fix of 3 CVEs
Type:
security
Severity:
Moderate
Release date:
2026-04-28 11:59:12 UTC
Description:
- CVE-2021-23239: fix potential directory existence info leak in sudoedit - CVE-2023-28486: escape control characters in log messages - CVE-2023-28487: escape control characters in sudoreplay output
Updated packages:
  • sudo-1.8.23-10.0.1.el7_9.3.tuxcare.els2.x86_64.rpm
    sha:710c5b4aeb67f5e951f324f67a432b920c97bd48a178a81bcbe8dd18fefc3006
  • sudo-devel-1.8.23-10.0.1.el7_9.3.tuxcare.els2.i686.rpm
    sha:6d33b212c70b5d381403c3b11f5fbb3b56b90176a79a56a98692162294a2ea54
  • sudo-devel-1.8.23-10.0.1.el7_9.3.tuxcare.els2.x86_64.rpm
    sha:d0a2da529f96c29ba63aa92f7971da593f849b705caa28f73575cacb5c3f11b7
Notes:
This page is generated automatically and has not been checked for errors. For clarification or corrections please contact the CloudLinux Packaging Team.