[CLSA-2025:1753799090] Fix CVE(s): CVE-2025-32462
Type:
security
Severity:
Important
Release date:
2025-07-29 14:24:55 UTC
Description:
* SECURITY UPDATE: restrict users from executing commands on unintended machines - debian/patches/CVE-2025-32462.patch: restricts --host usage to sudo -l only, preventing bypass of host-based sudoers rules and avoiding unintended local privilege escalation - CVE-2025-32462
Updated packages:
  • sudo_1.8.31-1ubuntu1.5+tuxcare.els1_amd64.deb
    sha:8924ae9f9011f8abe82b1c4e6e3a433aaaa14efd
  • sudo-ldap_1.8.31-1ubuntu1.5+tuxcare.els1_amd64.deb
    sha:a978619fd34abce94d3f325b285c03872f03c11e
Notes:
This page is generated automatically and has not been checked for errors. For clarification or corrections please contact the CloudLinux Packaging Team.