Users that are explicitly permitted to edit only specific
files using sudoedit, are still able to place files in
arbitrary directories.
This only affects systems where sudoedit is used to give
very fine-grained edit permissions, which is not the default
configuration. For users that have full sudoedit permission
or no sudoedit permission at all, no escalation is enabled by
this bug.
A user that is allowed to place files in an arbitrary
directory can (by placing a file in /etc/sudoers.d) obviously
fully escalate their privileges.