KEVIntel
7.8
CVSS
High

CVE-2021-3156

PUBLISHED

Sudo before 1.9.5p2 contains an off-by-one error that can result in a heap-based buffer overflow, which allows privilege escalation to root via...

Exploited in the wild Low complexity No user interaction
Vendor
Sudo Project
Product
Sudo
Published
Jan 26, 2021
EPSS

Description

Sudo before 1.9.5p2 contains an off-by-one error that can result in a heap-based buffer overflow, which allows privilege escalation to root via "sudoedit -s" and a command-line argument that ends with a single backslash character.

cisa metasploit

CVSS scores

CVSS v3.1 7.8 High

CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H

CVSS v2.0 7.2

AV:L/AC:L/Au:N/C:C/I:C/A:C

Exploitation status

Exploited in the wild

Recorded 2022-04-06 00:00:00 UTC · Source

SSVC decision points

Exploitation
active
Automatable
No
Technical impact
total

References

Known exploited vulnerability sources

Catalogues that list this CVE as a known exploited vulnerability.

Source Added
CISA Apr 06, 2022

Scanner integrations

Potential proof of concepts

These PoCs are unverified and could contain malware. Use at your own risk.

sudo_baron_samedit

metasploit · Created Unknown

Metasploit module for CVE-2021-3156

PurpleOzone/PE_CVE-CVE-2021-3156

github · Created 2023-05-13 01:02:32 UTC · 4 stars

Exploit for Ubuntu 20.04 using CVE-2021-3156 enhanced with post-exploitation scripts

hycheng15/CVE-2021-3156

github · Created 2022-12-25 03:58:20 UTC · 0 stars

PhuketIsland/CVE-2021-3156-centos7

github · Created 2022-11-03 13:10:23 UTC · 26 stars

利用sudo提权,只针对cnetos7

Mhackiori/CVE-2021-3156

github · Created 2022-07-04 13:55:24 UTC · 5 stars

Visualization, Fuzzing, Exploit and Patch of Baron Samedit Vulnerability

chenaotian/CVE-2021-3156

github · Created 2022-01-27 02:31:43 UTC · 8 stars

CVE-2021-3156 POC and Docker and Analysis write up

musergi/CVE-2021-3156

github · Created 2021-10-13 17:43:51 UTC · 2 stars

CyberCommands/CVE-2021-3156

github · Created 2021-08-07 08:38:50 UTC · 0 stars

TheFlash2k/CVE-2021-3156

github · Created 2021-06-30 18:00:03 UTC · 1 stars

lmol/CVE-2021-3156

github · Created 2021-03-19 14:06:09 UTC · 4 stars

Exploit generator for sudo CVE-2021-3156

worawit/CVE-2021-3156

github · Created 2021-03-15 17:37:02 UTC · 746 stars

Sudo Baron Samedit Exploit

oneoy/CVE-2021-3156

github · Created 2021-02-23 03:14:36 UTC · 0 stars

Rvn0xsy/CVE-2021-3156-plus

github · Created 2021-02-09 19:25:18 UTC · 201 stars

CVE-2021-3156非交互式执行命令

jm33-m0/CVE-2021-3156

github · Created 2021-02-09 07:55:47 UTC · 16 stars

sudo heap overflow to LPE, in Go

0xdevil/CVE-2021-3156

github · Created 2021-02-08 18:21:58 UTC · 51 stars

CVE-2021-3156: Sudo heap overflow exploit for Debian 10

1N53C/CVE-2021-3156-PoC

github · Created 2021-02-06 21:16:11 UTC · 5 stars

CptGibbon/CVE-2021-3156

github · Created 2021-02-03 19:57:56 UTC · 151 stars

Root shell PoC for CVE-2021-3156

dinhbaouit/CVE-2021-3156

github · Created 2021-02-03 09:48:46 UTC · 5 stars

CVE-2021-3156 Vagrant Lab

apogiatzis/docker-CVE-2021-3156

github · Created 2021-01-31 22:58:13 UTC · 7 stars

A docker environment to research CVE-2021-3156

kal1gh0st/CVE-2021-3156

github · Created 2021-01-31 16:10:11 UTC · 3 stars

Description Sudo before 1.9.5p2 has a Heap-based Buffer Overflow, allowing privilege escalation to root via "sudoedit -s" and a command-line argument that ends with a single backslash character.

Q4n/CVE-2021-3156

github · Created 2021-01-31 07:01:50 UTC · 2 stars

复现别人家的CVEs系列

teamtopkarl/CVE-2021-3156

github · Created 2021-01-31 03:38:37 UTC · 8 stars

blasty/CVE-2021-3156

github · Created 2021-01-30 20:39:58 UTC · 975 stars

nobodyatall648/CVE-2021-3156

github · Created 2021-01-30 10:53:26 UTC · 1 stars

checking CVE-2021-3156 vulnerability & patch script

stong/CVE-2021-3156

github · Created 2021-01-30 03:22:04 UTC · 435 stars

PoC for CVE-2021-3156 (sudo heap overflow)

mbcrump/CVE-2021-3156

github · Created 2021-01-29 19:24:41 UTC · 38 stars

Notes regarding CVE-2021-3156: Heap-Based Buffer Overflow in Sudo

ph4ntonn/CVE-2021-3156

github · Created 2021-01-28 09:52:55 UTC · 3 stars

CVE-2021-3156

baka9moe/CVE-2021-3156-Exp

github · Created 2021-01-28 08:55:04 UTC · 4 stars

kernelzeroday/CVE-2021-3156-Baron-Samedit

github · Created 2021-01-28 02:13:49 UTC · 18 stars

1day research effort

elbee-cyber/CVE-2021-3156-PATCHER

github · Created 2021-01-27 21:49:06 UTC · 3 stars

This simple bash script will patch the recently discovered sudo heap overflow vulnerability.

unauth401/CVE-2021-3156

github · Created 2021-01-27 16:35:43 UTC · 1 stars

reverse-ex/CVE-2021-3156

github · Created 2021-01-27 16:03:34 UTC · 111 stars

CVE-2021-3156

mr-r3b00t/CVE-2021-3156

github · Created 2021-01-26 19:53:04 UTC · 35 stars

Timeline

  • CVE ID Reserved

  • CVE Published to Public

  • Added to KEVIntel

  • Detected by Metasploit