Close Menu
TechurzTechurz

    Subscribe to Updates

    Get the latest creative news from FooBar about art, design and business.

    What's Hot

    It’s not your imagination: AI seed startups are commanding higher valuations

    March 31, 2026

    Yupp.ai shuts down after raising $33M from a16z crypto’s Chris Dixon

    March 31, 2026

    Whoop’s valuation just tripled to $10 billion

    March 31, 2026
    Facebook X (Twitter) Instagram
    Trending
    • It’s not your imagination: AI seed startups are commanding higher valuations
    • Yupp.ai shuts down after raising $33M from a16z crypto’s Chris Dixon
    • Whoop’s valuation just tripled to $10 billion
    • Nomadic raises $8.4 million to wrangle the data pouring off autonomous vehicles
    • The company behind ClassPass and Mindbody just got a lot bigger with a $7.5B merger
    • Exclusive: Runway launches $10M fund, Builders program to support early stage AI startups
    • Delve whistleblower strikes again, with alleged receipts about ‘fake compliance’
    • Popular AI gateway startup LiteLLM ditches controversial startup Delve
    Facebook X (Twitter) Instagram Pinterest Vimeo
    TechurzTechurz
    • Home
    • AI
    • Apps
    • News
    • Guides
    • Opinion
    • Reviews
    • Security
    • Startups
    TechurzTechurz
    Home»News»Several major Linux distros hit by serious Sudo security flaws
    News

    Several major Linux distros hit by serious Sudo security flaws

    TechurzBy TechurzJuly 7, 2025No Comments2 Mins Read
    Share Facebook Twitter Pinterest LinkedIn Tumblr Reddit Telegram Email
    The Linux penguin.
    Share
    Facebook Twitter LinkedIn Pinterest Email


    • Two flaws were first introduced in late 2013
    • They reside in the Sudo command-line utility
    • Patches are available and users are advised to apply them

    Two vulnerabilities were recently spotted in various Linux distributions which, when chained together, allow local attackers to escalate their privileges and thus run arbitrary files.

    The vulnerabilities are tracked as CVE-2025-32462 (severity score 2.8/10 – low severity), and CVE-2025-32463 (severity score 9.3/10 critical), and were found in the Sudo command-line utility for Linux and other Unix-like operating systems.

    All versions before 1.9.17p1 were said to be vulnerable, with Rich Mirch, the Stratascale researcher who found the flaws, saying they were lingering for more than a decade before being discovered. They were first introduced in late 2013, he added.


    You may like

    A decade-old flaw

    Sudo (short for “superuser do”) is a command that allows a permitted user to execute a command as the root user or another user, as defined in the system’s security policy. It provides controlled administrative access without requiring users to log in as the root account.

    For example, a user might run a sudo command that installs Firefox on Ubuntu, since installing software system-wide usually requires administrative privileges.

    “This primarily affects sites that use a common sudoers file that is distributed to multiple machines,” Todd C. Miller, a maintainer for the Sudo project, said in an advisory. “Sites that use LDAP-based sudoers (including SSSD) are similarly impacted.”

    The patch for Sudo was released in late June 2024, after responsible disclosure which happened in early April.

    Sign up to the TechRadar Pro newsletter to get all the top news, opinion, features and guidance your business needs to succeed!

    Furthermore, different Linux distributions also released advisories, fixing the flaw for their variant of the OS. For CVE-2025-32462, these include AlmaLinux 8, AlmaLinux 9, Alpine Linux, Amazon Linux, Debian, Gentoo, Oracle Linux, Red Hat, SUSE, and Ubuntu, while for CVE-2025-32463, they include Alpine Linux, Amazon Linux, Debian, Gentoo, Red Hat, SUSE, and Ubuntu.

    Linux users are advised to apply the available patches and make sure their Linux desktop distributions are generally updated.

    Via The Hacker News

    You might also like

    Distros flaws Hit Linux major Security Sudo
    Share. Facebook Twitter Pinterest LinkedIn Tumblr Email
    Previous ArticleSquid Game Creator Reveals Alternate Ending That Fans Say Should’ve Been the Real One
    Next Article NotebookLM’s AI Superpower Is Its Flexibility. Here’s How to Get Started With It
    Techurz
    • Website

    Related Posts

    Opinion

    Conntour raises $7M from General Catalyst, YC to build an AI search engine for security video systems

    March 26, 2026
    Opinion

    Delve did the security compliance on LiteLLM, an AI project hit by malware

    March 26, 2026
    Opinion

    Databricks bought two startups to underpin its new AI security product

    March 24, 2026
    Add A Comment
    Leave A Reply Cancel Reply

    Top Posts

    College social app Fizz expands into grocery delivery

    September 3, 20252,288 Views

    A Former Apple Luminary Sets Out to Create the Ultimate GPU Software

    September 25, 202516 Views

    The Reason Murderbot’s Tone Feels Off

    May 14, 202512 Views
    Stay In Touch
    • Facebook
    • YouTube
    • TikTok
    • WhatsApp
    • Twitter
    • Instagram
    Latest Reviews

    Subscribe to Updates

    Get the latest tech news from FooBar about tech, design and biz.

    Most Popular

    College social app Fizz expands into grocery delivery

    September 3, 20252,288 Views

    A Former Apple Luminary Sets Out to Create the Ultimate GPU Software

    September 25, 202516 Views

    The Reason Murderbot’s Tone Feels Off

    May 14, 202512 Views
    Our Picks

    It’s not your imagination: AI seed startups are commanding higher valuations

    March 31, 2026

    Yupp.ai shuts down after raising $33M from a16z crypto’s Chris Dixon

    March 31, 2026

    Whoop’s valuation just tripled to $10 billion

    March 31, 2026

    Subscribe to Updates

    Get the latest creative news from FooBar about art, design and business.

    Facebook X (Twitter) Instagram Pinterest
    • About Us
    • Contact Us
    • Privacy Policy
    • Terms and Conditions
    • Disclaimer
    © 2026 techurz. Designed by Pro.

    Type above and press Enter to search. Press Esc to cancel.