Database/Kernel, userspace & hypervisor

sudo: Local privilege escalation via the `--chroot` option
CVE-2025-32463Kernel, userspace & hypervisorKnown exploitedcurated
Impact
Local privilege escalation via the --chroot option - any local user reaches root on default sudoers, no sudo rights needed [KEV]
Who can reach it
Local user, incl. inside a container that ships sudo
What to do
Package update (sudo >= 1.9.17p1); no reboot. Also rebuild every container base image that includes sudo - the host fix does not cover tenant images
References
This entry is curated: imported from vendor advisories with machine assistance, not yet individually verified. Confirm against your vendor's advisory before acting, and report anything wrong.