[CLSA-2026:1790601456] sudo: Fix of 7 CVEs
Type:
security
Severity:
None
Release date:
2026-09-28 13:17:45 UTC
Description:
- Rebase onto the vendor's sudo-1.8.23-10.0.3.el7_9.3 sources - CVE-2025-32462: take the vendor's fix, keep our audit record of the rejected remote host - CVE-2026-35535 is now fixed by the vendor (sudo-1.8.23-CVE-2026-35535.patch); the TuxCare duplicate is dropped - Retained TuxCare fixes: CVE-2021-23239, CVE-2021-23240, CVE-2023-28486, CVE-2023-28487, CVE-2023-42465
Updated packages:
  • sudo-1.8.23-10.0.3.el7_9.3.tuxcare.els1.i686.rpm
    sha:915224712d53d21029543fcd12ecd3ea09940781851355750f83d9a8c3592b0f
  • sudo-1.8.23-10.0.3.el7_9.3.tuxcare.els1.x86_64.rpm
    sha:1c2daab951d48410d9b61602add3c2f0f0c0a2c37f69be1faf90097f81769d1b
  • sudo-devel-1.8.23-10.0.3.el7_9.3.tuxcare.els1.i686.rpm
    sha:d604afd7ecbfc050cd904482df46c95f07a42b88eb118d3f9f1aeee2e8f66df6
  • sudo-devel-1.8.23-10.0.3.el7_9.3.tuxcare.els1.x86_64.rpm
    sha:ae72c94b4a8f6188081fdf1ad1bb36504a3b1c14e003cfce2e92e2e9479943d0
Notes:
This page is generated automatically and has not been checked for errors. For clarification or corrections please contact the CloudLinux Packaging Team.