Predictive Vulnerability Intelligence.

Product

  • Product
  • Pricing
  • Documentation

Company

  • About
  • Partnerships
  • Blog
  • Support

Legal

  • Terms
  • Privacy
  • Data Licensing

© 2026 FAUCET Technologies LLC. All rights reserved.

CVE-2017-1000367

37
FAUCET Score

CVE-2017-1000367 is a critical input validation vulnerability in Todd Miller's sudo version 1.8.20 and earlier, specifically within the get_process_ttyname() function. This flaw allows for information disclosure and command execution, impacting the sudo_project sudo product. The vulnerability carries a CVSS score of 6.4 (Medium) with a local attack vector and high impact on confidentiality, integrity, and availability, but requires high privileges and high attack complexity. While not listed in CISA's KEV catalog, exploit code is publicly available on ExploitDB, and it has garnered significant community discussion and media coverage, indicating awareness and potential for exploitation.

Impacted Technologies

VendorProductVersion(s)CPE
<= 1.8.20CPE matchmatch criteria
cpe:2.3:a:sudo_project:sudo:*:*:*:*:*:*:*:*

CVSS Data

CVSS version used by this source: 3.0

6.4MEDIUM

CVSS:3.0/AV:L/AC:H/PR:H/UI:N/S:U/C:H/I:H/A:H

Attack Vector
LOCAL
Attack Complexity
HIGH
Privileges Required
HIGH
User Interaction
NONE
Scope
UNCHANGED
Confidentiality Impact
HIGH
Integrity Impact
HIGH
Availability Impact
HIGH
Exploitability Score
0.5
Impact Score
5.9
CvssVersion
3.0

Exploit Intelligence

EPSS Score
8.02%
Probability of exploitation in next 30 days
EPSS Percentile
94.2%
Percentile rank of EPSS score among Peer Group
As of 2026-07-27
Model: v2026.06.15
ExploitDB: EDB-42183 · Jun 14, 2017
This CVE's current EPSS score of 0.0802 is in the 100th percentile among its peer group of 418 CVEs.

Social Chatter

The average CVE in this peer group has 0.0 Twitter, 0.0 Reddit, 0.1 Bluesky, 0.0 Mastodon, and 0.1 GitHub mentions.

Media Mentions

The average CVE in this peer group has 0.1 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.

Remediation

Patch Available

Vendor Patches (3)

redhatpatch availablevia redhat_api
Product: Red Hat Enterprise Linux 5 Extended Lifecycle SupportFixed in: sudo-0:1.7.2p1-30.el5_11
View patch
redhatpatch availablevia redhat_api
Product: Red Hat Enterprise Linux 6Fixed in: sudo-0:1.8.6p3-28.el6_9
View patch
redhatpatch availablevia redhat_api
Product: Red Hat Enterprise Linux 7Fixed in: sudo-0:1.8.6p7-22.el7_3
View patch

Vendor Advisories (1)

redhatCVE-2017-1000367Important

sudo: Privilege escalation in via improper get_process_ttyname() parsing

May 30, 2017

References

lists.opensuse.org / opensuse-security-announce/2017-05/msg00077.html
Third Party Advisory
lists.opensuse.org / opensuse-security-announce/2017-05/msg00078.html
Third Party Advisory
lists.opensuse.org / opensuse-security-announce/2017-05/msg00079.html
Third Party Advisory
packetstormsecurity.com / files/142783/Sudo-get_process_ttyname-Race-Condition.html
ExploitThird Party AdvisoryVDB Entry
access.redhat.com / errata/RHSA-2017:1381
Third Party Advisory
access.redhat.com / errata/RHSA-2017:1382
Third Party Advisory
seclists.org / fulldisclosure/2017/Jun/3
Mailing ListThird Party Advisory
lists.fedoraproject.org / archives/list/package-announce%40lists.fedoraproject.org/message/VXEXC4NNIG2QOZY6N2YUK246KI3D3UQO
security.gentoo.org / glsa/201705-15
Third Party Advisory
exploit-db.com / exploits/42183
Third Party AdvisoryVDB Entry
sudo.ws / alerts/linux_tty.html
Vendor Advisory
debian.org / security/2017/dsa-3867
Third Party Advisory
openwall.com / lists/oss-security/2017/05/30/16
ExploitMailing ListThird Party Advisory
openwall.com / lists/oss-security/2022/12/22/5
openwall.com / lists/oss-security/2022/12/22/6
securityfocus.com / bid/98745
Third Party AdvisoryVDB Entry
securitytracker.com / id/1038582
ExploitThird Party AdvisoryVDB Entry
ubuntu.com / usn/USN-3304-1
Third Party Advisory