In Sudo through 1.9.17p2 before 3e474c2, a failure of a setuid, setgid, or setgroups call, during a privilege drop before running the mailer, is not a fatal error and can lead to privilege escalation.
This issue has been addressed in the following products: Red Hat Enterprise Linux 10 Via RHSA-2026:10758 https://access.redhat.com/errata/RHSA-2026:10758
This issue has been addressed in the following products: Red Hat Enterprise Linux 8 Via RHSA-2026:11521 https://access.redhat.com/errata/RHSA-2026:11521
This issue has been addressed in the following products: Red Hat Enterprise Linux 9 Via RHSA-2026:12310 https://access.redhat.com/errata/RHSA-2026:12310
This issue has been addressed in the following products: Red Hat Enterprise Linux 9.0 Update Services for SAP Solutions Via RHSA-2026:13731 https://access.redhat.com/errata/RHSA-2026:13731
This issue has been addressed in the following products: Red Hat Enterprise Linux 9.2 Update Services for SAP Solutions Via RHSA-2026:13891 https://access.redhat.com/errata/RHSA-2026:13891
This issue has been addressed in the following products: Red Hat Enterprise Linux 8.8 Update Services for SAP Solutions Red Hat Enterprise Linux 8.8 Telecommunications Update Service Via RHSA-2026:13892 https://access.redhat.com/errata/RHSA-2026:13892
This issue has been addressed in the following products: Red Hat Enterprise Linux 6 Extended Lifecycle Support - EXTENSION Via RHSA-2026:13896 https://access.redhat.com/errata/RHSA-2026:13896
This issue has been addressed in the following products: Red Hat Enterprise Linux 10.0 Extended Update Support Via RHSA-2026:13888 https://access.redhat.com/errata/RHSA-2026:13888
This issue has been addressed in the following products: Red Hat Enterprise Linux 9.6 Extended Update Support Via RHSA-2026:13889 https://access.redhat.com/errata/RHSA-2026:13889
This issue has been addressed in the following products: Red Hat Enterprise Linux 7 Extended Lifecycle Support Via RHSA-2026:13895 https://access.redhat.com/errata/RHSA-2026:13895
This issue has been addressed in the following products: Red Hat Enterprise Linux 8.6 Advanced Mission Critical Update Support Red Hat Enterprise Linux 8.6 Update Services for SAP Solutions Red Hat Enterprise Linux 8.6 Telecommunications Update Service Via RHSA-2026:14228 https://access.redhat.com/errata/RHSA-2026:14228
This issue has been addressed in the following products: Red Hat Enterprise Linux 9.4 Extended Update Support Via RHSA-2026:14437 https://access.redhat.com/errata/RHSA-2026:14437