sudo 权限升级安全漏洞 2025 | CVE-2025-32462
Issue
- 什么是 CVE-2025-32462?
 - 当 sudoer 配置列出一个特定的主机(通过 Host 或 Host_Alias)而不是 ALL 时,会出现此安全漏洞
 - sudo:通过 host 选项导致 LPE(Local Privilege Escalation,本地特权升级)
 
Environment
- Red Hat Enterprise Linux
 - OpenShift Container Platform
 sudo
Subscriber exclusive content
A Red Hat subscription provides unlimited access to our knowledgebase, tools, and much more.