CVE-2021-3156

Sudo Heap-Based Buffer Overflow Vulnerability

7.8
CVSS 3.1
100.0 %
EPSS (current)
2022-04-06
KEV addition
No
Ransomware

Timeline

Publication, first public exploit and KEV addition on a day axis.

Key facts

Vendor / product: Sudo / Sudo

Published: 2021-01-26 · Due (CISA): 2022-04-27

CWE: CWE-193 · EU list: no

Exploit references (metadata only)

SourceReferenceTitleDate
metasploitexploit/linux/local/sudo_baron_sameditexploit/linux/local/sudo_baron_samedit2021-01-26
exploitdb49521Sudo 1.9.5p1 - 'Baron Samedit ' Heap-Based Buffer Overflow Privilege Escalation (1)2021-02-03
exploitdb49522Sudo 1.9.5p1 - 'Baron Samedit ' Heap-Based Buffer Overflow Privilege Escalation (2)2021-02-03

References only — no downloads or instructions.

Sources