Sudo Project vendor intelligence

Sudo Project Known Exploited Vulnerabilities

Track evidence-backed exploitation affecting Sudo Project products, including the gap beyond CISA KEV, confidence assessments, sensor observations, and practical response context.

Total KEVs
2
Known exploited vulnerabilities affecting Sudo Project products
In CISA KEV
2
Records also listed in the official catalog
Beyond CISA KEV
0
Additional exploited CVEs absent from CISA KEV
Sensor Observed
0
Sudo Project KEVs with sensor-observed exploitation activity

The catalog gap matters for Sudo Project exposure

All two exploited Sudo Project CVEs tracked here are also listed in CISA KEV. Use product ownership and sensor evidence to prioritize within this portfolio.

100%
Covered by CISA
0%
Beyond CISA
1
Product families

Attested Sudo Project CVEs

Search the exploited-vulnerability portfolio, then narrow it to official CISA coverage or the additional records KEV Intelligence tracks beyond the catalog.

How exploitation is verified
CVE / description Product Confidence CISA KEV Added
CVE-2025-32463

Sudo before 1.9.17p1 allows local users to obtain root access because /etc/nsswitch.conf from a user-controlled directory is used with the --chroot...

Sudo Confirmed In CISA 01 Jun 2026
CVE-2021-3156

Sudo before 1.9.5p2 contains an off-by-one error that can result in a heap-based buffer overflow, which allows privilege escalation to root via...

Sudo Confirmed In CISA 06 Apr 2022

Showing 2 of 2 Sudo Project known exploited vulnerabilities.

Recurring weakness patterns

Off-by-one error and inclusion account for two mapped occurrences across this Sudo Project KEV portfolio.

Browse all KEVs →

Early warning alerts

Get alerts on high-impact exploitation

Receive curator-selected alerts when exploitation activity warrants attention. Each alert includes the evidence and context needed to decide what requires attention now.

Occasional high-impact alerts. Unsubscribe anytime. See our Privacy Policy.