Videos

Published on October 15th, 2019 📆 | 1991 Views ⚑

0

Linux Sudo Vulnerability | CVE-2019-14287


https://www.ispeech.org/text.to.speech


A Linux Sudo vulnerability has been disclosed: CVE-2019-14287.
Use Lansweeper to find all vulnerable Linux computers on your network. Download the network report here: https://www.lansweeper.com/vulnerability/linux-sudo-open-root-access-vulnerability-discovered/

A bug has been discovered in Sudo, one of the most important, powerful, and commonly used utilities that comes as a core command installed on almost every UNIX and Linux-based operating system.

The vulnerability in question is a Sudo security policy bypass flaw that could allow a malicious user or a program to execute arbitrary commands as root on a targeted Linux system.

When executing commands on a Linux operating system, unprivileged users can use the "Superuser do" command to execute commands as root just by specifying the user ID "-1" or "4294967295."

Find Vulnerable Sudo Versions - Run the Audit:
https://www.lansweeper.com/report/linux-sudo-vulnerability-audit/

All Sudo versions prior to the latest released version 1.8.28 are affected by the vulnerability.

The vulnerability tracked as CVE-2019-14287, does require a nonstandard configuration but nonetheless does open the door to unauthorized users.





The vulnerability allows users to bypass the nonroot restriction by simply using -u#-1 in the command line.

Start your free trial today ► https://www.lansweeper.com/download

Lansweeper enables you to manages your entire IT network, saving an incredible amount of time by automating key tasks. It features best in class fully automatic asset scanning and network inventory software, to keep you on top of your IT-environment.

Recommended by sysadmins all over the world, download your Lansweeper free trial today and start managing your IT assets the right way.

Useful Links
Website ► https://www.lansweeper.com/
Knowledgebase ► https://www.lansweeper.com/kb/
Forum ► https://www.lansweeper.com/forum/
Blog ► https://www.lansweeper.com/blog/

Let’s Connect
Facebook ► https://www.facebook.com/lansweeper.network.inventory
Twitter ► https://twitter.com/lansweeper
Linkedin ► https://www.linkedin.com/company/lansweeper-bvba/
Contact ► Sales@lansweeper.com

video, sharing, camera phone, video phone, free, upload
2019-10-15 13:53:51

source

Tagged with:



Comments are closed.