sudo 1.6.8 and other versions does not clear the PYTHONINSPECT environment variable, which allows limited local users to gain privileges via a Python script, a variant of CVE-2005-4158.
Get an AI-powered plain-language explanation of this vulnerability and remediation steps.
Login to generate AI explanation28 reference(s) from NVD