[CLSA-2026:1777378006] sudo: Fix of 3 CVEs
Type:
security
Severity:
Moderate
Release date:
2026-04-28 12:06:55 UTC
Description:
- CVE-2021-23239: fix potential directory existence info leak in sudoedit - CVE-2023-28486: escape control characters in log messages - CVE-2023-28487: escape control characters in sudoreplay output
Updated packages:
  • sudo-1.8.23-10.0.1.el7_9.3.tuxcare.els2.x86_64.rpm
    sha:73e4acf32697a2a72ea08ebb06ecdf69d42cb2b256fdd1d17612f86860a92a48
  • sudo-devel-1.8.23-10.0.1.el7_9.3.tuxcare.els2.i686.rpm
    sha:ae9e113cb8262d5e8562686eb7d56360c1ebc93f528caca904d179d923f4fbd0
  • sudo-devel-1.8.23-10.0.1.el7_9.3.tuxcare.els2.x86_64.rpm
    sha:f1e80da1d79644ddf5336ebbc7194de2e18456edd3431410b2a8788144379359
Notes:
This page is generated automatically and has not been checked for errors. For clarification or corrections please contact the CloudLinux Packaging Team.