sudo 1.6.0 through 1.6.3p7 does not properly clear the environment before calling the mail program, which could allow local users to gain root privileges by modifying environment variables and changing how the mail program is invoked.
Get an AI-powered plain-language explanation of this vulnerability and remediation steps.
Login to generate AI explanation26 reference(s) from NVD