[CLSA-2026:1781343160] Fix CVE(s): CVE-2026-35535
Type:
security
Severity:
Important
Release date:
2026-06-13 09:33:24 UTC
Description:
* SECURITY UPDATE: privilege escalation via mailer on privilege-drop failure - debian/patches/CVE-2026-35535.patch: make a setuid/setgid/setgroups failure during the privilege drop before running the mailer fatal - CVE-2026-35535
CVEs fixed:
Updated packages:
  • sudo_1.8.16-0ubuntu1.11+tuxcare.els4_amd64.deb
    sha:cb6493b9cd9c3b68a8a0cf57d8c7c20685ae3481
  • sudo-ldap_1.8.16-0ubuntu1.11+tuxcare.els4_amd64.deb
    sha:d693c2262509fbd83904f6a18ee08f969bf60a28
Notes:
This page is generated automatically and has not been checked for errors. For clarification or corrections please contact the CloudLinux Packaging Team.