CVE-2006-0151
sudo 1.6.8 and other versions does not clear the PYTHONINSPECT environment variable, which allows limited local users to gain privileges via a Python script, a variant of CVE-2005-4158.
- Todd Miller Sudo
- = 1.5.6, 1.5.7, 1.5.8, 1.5.9, 1.6, 1.6.1, 1.6.2, 1.6.3, 1.6.3_p1, 1.6.3_p2, 1.6.3_p3, 1.6.3_p4, 1.6.3_p5, 1.6.3_p6, 1.6.3_p7, 1.6.4, 1.6.4_p1, 1.6.4_p2, 1.6.5, 1.6.5_p1, 1.6.5_p2, 1.6.6, 1.6.7, 1.6.7_p5, 1.6.8, 1.6.8_p1, 1.6.8_p2, 1.6.8_p5, 1.6.8_p7, 1.6.8_p8, 1.6.8_p9, 1.6.8_p12
- Fix
- Available
- CVSS 2.0
- 7.2 HIGH
- EPSS
- 0.6% (46th percentile)
- NVD status
- Modified
- Published
- 2006-01-09
CVE-2006-0151 at NVD
No indexed exploits for CVE-2006-0151 yet
Our index is partial: it proves presence, never absence
No exploit for CVE-2006-0151 has been indexed yet. Our index is built from live traffic and upstream syncs, so this page can only say what it knows — not that no exploit exists.