CVE-2025-32463
π₯ Known Exploited (CISA KEV)CRITICAL
9.3
CVSS Severity Score
Vulnerability Description
Sudo before 1.9.17p1 allows local users to obtain root access because /etc/nsswitch.conf from a user-controlled directory is used with the --chroot option.
Affected Platforms (CPE)
π¦
Sudo Project
Sudo
>= 1.9.14 and < 1.9.17= 1.9.17
π»
Canonical
Ubuntu Linux
= 22.04= 24.04= 24.10= 25.04
π»
Debian
Debian Linux
= 11.0= 12.0= 13.0
π»
Opensuse
Leap
= 15.6
