Database/Kernel, userspace & hypervisor

sudo: Baron Samedit: heap overflow in sudo argument parsing, root from any local account
CVSS 7.8CVE-2021-3156Kernel, userspace & hypervisorKnown exploitedcurated
Impact
Baron Samedit: heap overflow in sudo argument parsing, root from any local account [KEV]
Who can reach it
Local user
What to do
Package update only; no reboot
References
Related entries
- sudo: Local privilege escalation via the `--chroot` optionCVE-2025-32463 · sudoHigh
- sudo: Local privilege escalation via the `--host` option against host-specific sudoers rulesCVE-2025-32462 · sudoHigh
- Linux kernel (seq_file / fs layer): Sequoia: size_t-to-int conversion in the filesystem layer, local root on defaultCVE-2021-33909 · Linux kernel (seq_file / fs layer)High
- Linux kernel (eBPF verifier): eBPF ALU32 bitwise-op bounds tracking flawCVE-2021-3490 · Linux kernel (eBPF verifier)High
- polkit: Local privilege escalation via polkit_system_bus_name_get_creds_sync() raceCVE-2021-3560 · polkitHigh
- polkit (pkexec): PwnKit: local privilege escalation to root via argv handlingCVE-2021-4034 · polkit (pkexec)High
This entry is curated: imported from vendor advisories with machine assistance, not yet individually verified. Confirm against your vendor's advisory before acting, and report anything wrong.