Sudo - Local Privilege Escalation via chroot
CVE-2025-32463
Verified
Description
Sudo before 1.9.17p1 allows local users to obtain root access by using /etc/nsswitch.conf from a user-controlled directory with the --chroot (-R) option.
Severity
Critical
CVSS Score
9.3
Exploit Probability
55%
Published Date
September 13, 2025
Template Author
seungah-hong
CVE-2025-32463.yaml
9.3Score
CVSS Metrics
CVSS Vector:
CVSS:3.1/AV:L/AC:L/PR:N/UI:N/S:C/C:H/I:H/A:H
CVE ID:
cve-2025-32463
CWE ID:
cwe-426
Remediation Steps
Upgrade sudo to version 1.9.17p1 or later.