弊社のウェブページの改善のためにクッキーを使用しています。弊社のクッキーポリシーをお読みください。
2023-02-20
Severity
Status
A flaw in exists in sudo’s -e option (aka sudoedit) that allows a malicious user with sudoedit privileges to edit arbitrary files. Sudo versions 1.8.0 through 1.9.12p1 inclusive are affected. Versions of sudo prior to 1.8.0 construct the argument vector differently and are not affected.
CVE-2023-22809 affected ASUSTOR products with ADM 4.0 and later.
Product | Severity | Fixed Release Availability |
---|---|---|
ADM 4.2 | Moderate | Upgrade to 4.2.0.RE71 or above. |
ADM 4.0 | Moderate | Upgrade to 4.0.6.REG2 or above. |
Revision | Date | Description |
---|---|---|
1 | 2023-02-01 | Initial public release. |
2 | 2023-02-08 | Release ADM 4.2.0.RE71 to update Sudo package for fixing these potential vulnerabilities. |
3 | 2023-02-20 | Release ADM 4.0.6.REG2 to update Sudo package for fixing these potential vulnerabilities. |
Copyright © 2025 ASUSTOR Inc.