Predictive Vulnerability Intelligence.

Product

  • Product
  • Pricing
  • Documentation

Company

  • About
  • Partnerships
  • Blog
  • Support

Legal

  • Terms
  • Privacy
  • Data Licensing

© 2026 FAUCET Technologies LLC. All rights reserved.

CVE-2025-32463

96
FAUCET Score

CVE-2025-32463 is a critical local privilege escalation vulnerability in Sudo versions prior to 1.9.17p1, allowing local users to gain root access by manipulating the /etc/nsswitch.conf file within a user-controlled chroot environment. This flaw impacts major Linux distributions including Canonical, Debian, OpenSUSE, Red Hat, and SUSE. Rated with a CVSS score of 7.8 (High) and a FAUCET Risk Score of 95.0, it presents a significant threat due to its low attack complexity, requiring only low privileges and no user interaction to achieve high impact on confidentiality, integrity, and availability. The vulnerability is actively exploited in the wild, listed on CISA's KEV catalog and Hot List, with public exploit code available in Metasploit and ExploitDB, indicating a high probability of exploitation and widespread community attention.

Impacted Technologies

VendorProductVersion(s)CPE
>= 1.9.14, < 1.9.17CPE matchmatch criteria
cpe:2.3:a:sudo_project:sudo:*:*:*:*:*:*:*:*
1.9.17CPE matchmatch criteria
cpe:2.3:a:sudo_project:sudo:1.9.17:-:*:*:*:*:*:*
22.04CPE matchmatch criteria
cpe:2.3:o:canonical:ubuntu_linux:22.04:*:*:*:lts:*:*:*
24.04CPE matchmatch criteria
cpe:2.3:o:canonical:ubuntu_linux:24.04:*:*:*:lts:*:*:*
24.10CPE matchmatch criteria
cpe:2.3:o:canonical:ubuntu_linux:24.10:*:*:*:-:*:*:*

CVSS Data

CVSS version used by this source: 3.1

9.3CRITICAL

CVSS:3.1/AV:L/AC:L/PR:N/UI:N/S:C/C:H/I:H/A:H

Attack Vector
LOCAL
Attack Complexity
LOW
Privileges Required
NONE
User Interaction
NONE
Scope
CHANGED
Confidentiality Impact
HIGH
Integrity Impact
HIGH
Availability Impact
HIGH
Exploitability Score
2.5
Impact Score
6.0
CvssVersion
3.1

Exploit Intelligence

EPSS Score
54.94%
Probability of exploitation in next 30 days
EPSS Percentile
98.9%
Percentile rank of EPSS score among Peer Group
As of 2026-07-27
Model: v2026.06.15
Added to KEV · Sep 29, 2025
Metasploit: Sudo Chroot 1.9.17 Privilege Escalation · Jun 30, 2025
Nuclei: CVE-2025-32463 · Sep 13, 2025
ExploitDB: EDB-52352 · Jul 8, 2025
This CVE's current EPSS score of 0.5494 is in the 100th percentile among its peer group of 16,994 CVEs.

Social Chatter

The average CVE in this peer group has 0.0 Twitter, 0.1 Reddit, 0.2 Bluesky, 0.1 Mastodon, and 0.2 GitHub mentions.

Media Mentions

The average CVE in this peer group has 0.3 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.

Remediation

Patch Available

Vendor Patches (11)

autodeskpatch availablevia llm_extracted
View patch
freepbxpatch availablevia llm_extracted
View patch
githubpatch availablevia llm_extracted
View patch
honeywellpatch availablevia llm_extracted
View patch
microsoftpatch availablevia msrc
Product: cm2 sudo 1.9.17-1 on CBL Mariner 2.0Fixed in: 1.9.17-1
microsoftpatch availablevia msrc
Product: azl3 sudo 1.9.17-1 on Azure Linux 3.0Fixed in: 1.9.17-1
microsoftpatch availablevia msrc
Product: cbl2 sudo 1.9.17-1 on CBL Mariner 2.0Fixed in: 1.9.17-1
microsoftpatch availablevia msrc
Product: 19550-16823Fixed in: 1.9.17-1
microsoftpatch availablevia msrc
Product: 19595-17084Fixed in: 1.9.17-1
microsoftpatch availablevia msrc
Product: 20260-17086Fixed in: 1.9.17-1
redhatpatch availablevia redhat_api
Product: Red Hat Enterprise Linux 10Fixed in: sudo-0:1.9.15-8.p5.el10_0.2
View patch

Vendor Advisories (6)

honeywellllm-honeywell-c82b5cfda9df97a3CRITICAL

HP ThinPro 8.1 SP8 Security Updates

Oct 27, 2025
autodeskllm-autodesk-c365b674a2ff5a3aCRITICAL

HP ThinPro 8.1 SP8 Security Updates

Oct 27, 2025
freepbxllm-freepbx-e54908c7967265f6CRITICAL

HP ThinPro 8.1 SP8 Security Updates

Oct 27, 2025
githubllm-github-87d446bd173e473eHIGH

AS-2025-004: Sudo

Jul 17, 2025
redhatCVE-2025-32463Important

sudo: LPE via chroot option

Jun 30, 2025
microsoft2025-Jun/CVE-2025-32463Critical

Sudo before 1.9.17p1 allows local users to obtain root access

Jun 10, 2025

References

iototsecnews.jp / 2025/07/01/linux-sudo-chroot-vulnerability-enables-hackers-to-elevate-privileges-to-root
Third Party Advisory
cisa.gov / known-exploited-vulnerabilities-catalog
US Government Resource
access.redhat.com / security/cve/cve-2025-32463
Third Party Advisory
bugs.gentoo.org / show_bug.cgi
Issue TrackingThird Party Advisory
explore.alas.aws.amazon.com / CVE-2025-32463.html
Third Party Advisory
security-tracker.debian.org / tracker/CVE-2025-32463
Third Party Advisory
ubuntu.com / security/notices/USN-7604-1
Third Party Advisory
openwall.com / lists/oss-security/2025/06/30/3
Third Party Advisory
secpod.com / blog/sudo-lpe-vulnerabilities-resolved-what-you-need-to-know-about-cve-2025-32462-and-cve-2025-32463
ExploitThird Party Advisory
stratascale.com / vulnerability-alert-CVE-2025-32463-sudo-chroot
ExploitThird Party Advisory
sudo.ws / releases/changelog
Release Notes
sudo.ws / security/advisories
Vendor Advisory
sudo.ws / security/advisories/chroot_bug
Vendor Advisory
suse.com / security/cve/CVE-2025-32463.html
Third Party Advisory
suse.com / support/update/announcement/2025/suse-su-202502177-1
Third Party Advisory
vicarius.io / vsociety/posts/cve-2025-32463-detect-sudo-vulnerability
Third Party Advisory
vicarius.io / vsociety/posts/cve-2025-32463-mitigate-sudo-vulnerability
MitigationThird Party Advisory