[ALSA-2026:75571] Important: sudo security update
Type:
security
Severity:
important
Release date:
2026-10-06
Description:
The sudo packages contain the sudo utility which allows system administrators to provide certain users with the permission to execute privileged commands, which are used for system management purposes, without having to log in as root. Security Fix(es): * sudo: sudo: TZ environment variable allows bypass of NOTBEFORE/NOTAFTER time-based authorization (CVE-2026-96512) For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
Updated packages listed below:
Architecture Package Checksum
aarch64 sudo-1.9.17p2-3.el9_8.3.aarch64.rpm 551ae1018d5d4d35934dffe33a056a5d492da4b0c231569d62644328c4caccbc
aarch64 sudo-python-plugin-1.9.17p2-3.el9_8.3.aarch64.rpm 5daf0d3a7857719028f4e42bac782ba75bde9d069eb19a3ce4211ca9e8507afe
ppc64le sudo-python-plugin-1.9.17p2-3.el9_8.3.ppc64le.rpm 436f877849412b7ea5f55f567eaa6cf220d09da7989cc2d6e2d2e624e0c45f95
ppc64le sudo-1.9.17p2-3.el9_8.3.ppc64le.rpm 8fbe7eb1a6fb52397e7ef4a9e342df1dcc330bca68348290bb7ade5fa0347edc
s390x sudo-1.9.17p2-3.el9_8.3.s390x.rpm ba7d8da72a7f56f46161f73e8feaaa0344201bab78f43b852cd9af6143222bc2
s390x sudo-python-plugin-1.9.17p2-3.el9_8.3.s390x.rpm d948baebcc36857e19860a9eb0b8d7071c2a66f3c873bd39957cbc71ce6a266c
x86_64 sudo-python-plugin-1.9.17p2-3.el9_8.3.x86_64.rpm 5627b06cb8b965a8666a50f11f21a7ba845b47efd7ed7615f0ba4008f6239c67
x86_64 sudo-1.9.17p2-3.el9_8.3.x86_64.rpm 997ed5260bd9a2605ce9cfee3f78e8252d9ee243f1bd025d3576d31ae8de85cc
Notes:
This page is generated automatically from Red Hat security data and has not been checked for errors. For clarification or corrections please contact the AlmaLinux Packaging Team.