August 2, 2026

CVE Watchtower


← Back to CVE List

CVE-2021-3156NVD

Vulnerability Summary

Sudo before 1.9.5p2 contains an off-by-one error that can result in a heap-based buffer overflow, which allows privilege escalation to root via "sudoedit -s" and a command-line argument that ends with a single backslash character.
Severity Level
UNKNOWN
Published Date
Jan 26, 2021
Last Modified
Oct 21, 2025
Exploitation Status
ACTIVE
EPSS Score (30-Day)
Data Pending
Root Weakness (CWE)
N/A

External References