PatchSiren

sudo-project CVE debriefs

These pages are published after PatchSiren validates generated defensive summaries against stored public CVE and source evidence.

HIGH sudo-project CVE published 2026-08-29

CVE-2026-82474

AI-assisted PatchSiren debrief based on the supplied source corpus. The CVE record was published on 2026-08-29T17:17:59.910Z and has not been modified since then. Sudo through 1.9.17p2 fails to apply intercept policy checks to the execveat system call in ptrace-based intercept mode, allowing users permitted to run specific commands to execute denied programs by calling execveat directly or through fexecve [truncated]