CVE-2021-3156
Sudo before 1.9.5p2 contains an off-by-one error that can result in a heap-based buffer overflow, which allows privilege escalation to root via...
Basic Information
- CVE State
- PUBLISHED
- Reserved Date
- January 15, 2021
- Published Date
- January 26, 2021
- Last Updated
- February 03, 2025
- Vendor
- n/a
- Product
- n/a
- Description
- Sudo before 1.9.5p2 contains an off-by-one error that can result in a heap-based buffer overflow, which allows privilege escalation to root via "sudoedit -s" and a command-line argument that ends with a single backslash character.
CVSS Scores
CVSS v3.1
Vector: CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
SSVC Information
- Exploitation
- active
- Technical Impact
- total
References
Known Exploited Vulnerability Information
Source | Added Date |
---|---|
CISA | 2022-04-06 00:00:00 UTC |
Scanner Integrations
Scanner | URL | Date Detected |
---|---|---|
Metasploit | https://github.com/rapid7/metasploit-framework/blob/master/modules/exploits/linux/local/sudo_baron_samedit.rb | 2025-04-29 11:01:17 UTC |
Potential Proof of Concepts
Warning: These PoCs have not been tested and could contain malware. Use at your own risk.
sudo_baron_samedit
Type: metasploit • Created: Unknown
PurpleOzone/PE_CVE-CVE-2021-3156
Type: github • Created: 2023-05-13 01:02:32 UTC • Stars: 4
PhuketIsland/CVE-2021-3156-centos7
Type: github • Created: 2022-11-03 13:10:23 UTC • Stars: 26
Mhackiori/CVE-2021-3156
Type: github • Created: 2022-07-04 13:55:24 UTC • Stars: 5
chenaotian/CVE-2021-3156
Type: github • Created: 2022-01-27 02:31:43 UTC • Stars: 8
musergi/CVE-2021-3156
Type: github • Created: 2021-10-13 17:43:51 UTC • Stars: 2
d3c3ptic0n/CVE-2021-3156
Type: github • Created: 2021-09-27 06:09:06 UTC • Stars: 0
CyberCommands/CVE-2021-3156
Type: github • Created: 2021-08-07 08:38:50 UTC • Stars: 0
lmol/CVE-2021-3156
Type: github • Created: 2021-03-19 14:06:09 UTC • Stars: 4
worawit/CVE-2021-3156
Type: github • Created: 2021-03-15 17:37:02 UTC • Stars: 746
oneoy/CVE-2021-3156
Type: github • Created: 2021-02-23 03:14:36 UTC • Stars: 0
Rvn0xsy/CVE-2021-3156-plus
Type: github • Created: 2021-02-09 19:25:18 UTC • Stars: 201
jm33-m0/CVE-2021-3156
Type: github • Created: 2021-02-09 07:55:47 UTC • Stars: 16
0xdevil/CVE-2021-3156
Type: github • Created: 2021-02-08 18:21:58 UTC • Stars: 51
1N53C/CVE-2021-3156-PoC
Type: github • Created: 2021-02-06 21:16:11 UTC • Stars: 5
CptGibbon/CVE-2021-3156
Type: github • Created: 2021-02-03 19:57:56 UTC • Stars: 151
dinhbaouit/CVE-2021-3156
Type: github • Created: 2021-02-03 09:48:46 UTC • Stars: 5
apogiatzis/docker-CVE-2021-3156
Type: github • Created: 2021-01-31 22:58:13 UTC • Stars: 7
kal1gh0st/CVE-2021-3156
Type: github • Created: 2021-01-31 16:10:11 UTC • Stars: 3
Q4n/CVE-2021-3156
Type: github • Created: 2021-01-31 07:01:50 UTC • Stars: 2
teamtopkarl/CVE-2021-3156
Type: github • Created: 2021-01-31 03:38:37 UTC • Stars: 8
blasty/CVE-2021-3156
Type: github • Created: 2021-01-30 20:39:58 UTC • Stars: 975
stong/CVE-2021-3156
Type: github • Created: 2021-01-30 03:22:04 UTC • Stars: 435
mbcrump/CVE-2021-3156
Type: github • Created: 2021-01-29 19:24:41 UTC • Stars: 38
baka9moe/CVE-2021-3156-Exp
Type: github • Created: 2021-01-28 08:55:04 UTC • Stars: 4
kernelzeroday/CVE-2021-3156-Baron-Samedit
Type: github • Created: 2021-01-28 02:13:49 UTC • Stars: 18
elbee-cyber/CVE-2021-3156-PATCHER
Type: github • Created: 2021-01-27 21:49:06 UTC • Stars: 3
unauth401/CVE-2021-3156
Type: github • Created: 2021-01-27 16:35:43 UTC • Stars: 1
reverse-ex/CVE-2021-3156
Type: github • Created: 2021-01-27 16:03:34 UTC • Stars: 111
mr-r3b00t/CVE-2021-3156
Type: github • Created: 2021-01-26 19:53:04 UTC • Stars: 35