FreeBSD VuXML: Documenting security issues in FreeBSD and the FreeBSD Ports Collection

sudo -- environmental variable CDPATH is not cleared

Affected packages
sudo < 1.6.8.4

Details

VuXML ID 045944a0-6bca-11d9-aaa6-000a95bc6fae
Discovery 2004-10-18
Entry 2005-01-21
Modified 2013-06-19

A sudo bug report says:

sudo doesn't unset the CDPATH variable, which leads to possible security problems.

References

Message http://www.sudo.ws/pipermail/sudo-announce/2004-November/000044.html
URL http://www.sudo.ws/bugs/show_bug.cgi?id=155