Sudo Project vendor intelligence
Sudo Project Known Exploited Vulnerabilities
Track evidence-backed exploitation affecting Sudo Project products, including the gap beyond CISA KEV, confidence assessments, sensor observations, and practical response context.
- Total KEVs
- 2
- Known exploited vulnerabilities affecting Sudo Project products
- In CISA KEV
- 2
- Records also listed in the official catalog
- Beyond CISA KEV
- 0
- Additional exploited CVEs absent from CISA KEV
- Sensor Observed
- 0
- Sudo Project KEVs with sensor-observed exploitation activity
The catalog gap matters for Sudo Project exposure
All two exploited Sudo Project CVEs tracked here are also listed in CISA KEV. Use product ownership and sensor evidence to prioritize within this portfolio.
- 100%
- Covered by CISA
- 0%
- Beyond CISA
- 1
- Product families
Attested Sudo Project CVEs
Search the exploited-vulnerability portfolio, then narrow it to official CISA coverage or the additional records KEV Intelligence tracks beyond the catalog.
How exploitation is verified| CVE / description | Product | Confidence | CISA KEV | Added |
|---|---|---|---|---|
|
CVE-2025-32463
Sudo before 1.9.17p1 allows local users to obtain root access because /etc/nsswitch.conf from a user-controlled directory is used with the --chroot... |
Sudo | Confirmed | In CISA | 01 Jun 2026 |
|
CVE-2021-3156
Sudo before 1.9.5p2 contains an off-by-one error that can result in a heap-based buffer overflow, which allows privilege escalation to root via... |
Sudo | Confirmed | In CISA | 06 Apr 2022 |
No Sudo Project CVEs match this search or filter.
Showing 2 of 2 Sudo Project known exploited vulnerabilities.
Recurring weakness patterns
Off-by-one error and inclusion account for two mapped occurrences across this Sudo Project KEV portfolio.
Early warning alerts
Get alerts on high-impact exploitation
Receive curator-selected alerts when exploitation activity warrants attention. Each alert includes the evidence and context needed to decide what requires attention now.