[CLSA-2026:1781342947] Fix CVE(s): CVE-2026-35535
Type:
security
Severity:
Important
Release date:
2026-06-13 09:29:39 UTC
Description:
* SECURITY UPDATE: privilege escalation via mailer on privilege-drop failure - debian/patches/CVE-2026-35535.patch: make a setuid/setgid/setgroups failure during the privilege drop before running the mailer fatal - CVE-2026-35535
CVEs fixed:
Updated packages:
  • sudo_1.8.21p2-3ubuntu1.6+tuxcare.els3_amd64.deb
    sha:8cdd28200f9681045f6e78798af3082af67186da
  • sudo-ldap_1.8.21p2-3ubuntu1.6+tuxcare.els3_amd64.deb
    sha:8d9d1f367c27375a54fde33fc98f313cf064d08e
Notes:
This page is generated automatically and has not been checked for errors. For clarification or corrections please contact the CloudLinux Packaging Team.