[CLSA-2026:1776964620] sudo: Fix of 2 CVEs
Type:
security
Severity:
Important
Release date:
2026-04-23 17:17:05 UTC
Description:
- CVE-2021-23240: fix race condition in selinux_edit_copy_tfiles allowing privilege escalation via symlink attack - CVE-2023-42465: make sudo less vulnerable to ROWHAMMER attacks
Updated packages:
  • sudo-1.8.23-10.amzn2.3.8.tuxcare.els1.x86_64.rpm
    sha:538b80388c619e550350e5d9d403752b30347b5e15da580ac786612cec13f664
  • sudo-devel-1.8.23-10.amzn2.3.8.tuxcare.els1.x86_64.rpm
    sha:c82f909ad5d8ee165db80dc0b92d2e093862d5fbe1523dcf01dc30210a451639
Notes:
This page is generated automatically and has not been checked for errors. For clarification or corrections please contact the CloudLinux Packaging Team.