CVE-2019-18634
HIGHSudo <1.8.26 - Buffer Overflow
Title source: llmDescription
In Sudo before 1.8.26, if pwfeedback is enabled in /etc/sudoers, users can trigger a stack-based buffer overflow in the privileged sudo process. (pwfeedback is a default setting in Linux Mint and elementary OS; however, it is NOT the default for upstream and many other packages, and would exist only if enabled by an administrator.) The attacker needs to deliver a long string to the stdin of getln() in tgetpass.c.
Exploits (18)
github
WORKING POC
690 stars
by lockedbyte · cpoc
https://github.com/lockedbyte/CVE-Exploits/tree/master/CVE-2019-18634
nomisec
WORKING POC
234 stars
by saleemrashid · poc
https://github.com/saleemrashid/sudo-cve-2019-18634
github
34 stars
by DarkFunct · cpoc
https://github.com/DarkFunct/CVE_Exploits/tree/main/CVE-2019-18634
nomisec
WORKING POC
by TheJoyOfHacking · poc
https://github.com/TheJoyOfHacking/saleemrashid-sudo-cve-2019-18634
References (26)
... and 6 more
Scores
CVSS v3
7.8
EPSS
0.8747
EPSS Percentile
99.5%
Attack Vector
LOCAL
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
Details
CWE
CWE-787
Status
published
Products (4)
debian/debian_linux
8.0
debian/debian_linux
9.0
debian/debian_linux
10.0
sudo_project/sudo
1.7.1 - 1.8.26
Published
Jan 29, 2020
Tracked Since
Feb 18, 2026