Summary
The remote host is missing an update to sudo
announced via advisory DSA 031-1.
Solution
https://secure1.securityspace.com/smysecure/catid.html?in=DSA%20031-1
Insight
Todd Miller announced a new version of sudo which corrects a buffer overflow that could potentially be used to gain root privilages on the local system. The fix from sudo 1.6.3p6 is available in sudo 1.6.2p2-1potato1 for Debian 2.2 (potato).
We recommend you upgrade your sudo package immediately.
Severity
Classification
-
CVE CVE-2001-0279 -
CVSS Base Score: 7.2
AV:L/AC:L/Au:N/C:C/I:C/A:C
Related Vulnerabilities