Back Linuxsecurity Fedora 41: Advisory for sudo-rs CVE-2025
A memory safe implementation of sudo and su. Update Information : Update to version 0.2.10. This release includes fixes for CVE-2025-64170 and CVE-2025-64517.
A memory safe implementation of sudo and su.
Update to version 0.2.10. This release includes fixes for CVE-2025-64170 and CVE-2025-64517.
* Mon Nov 17 2025 Fabio Valentini - 0.2.10-1 - Update to version 0.2.10; Fixes RHBZ#2413768
* Mon Nov 17 2025 Fabio Valentini - 0.2.10-1 - Update to version 0.2.10; Fixes RHBZ#2413768
[ 1 ] Bug #2414748 - CVE-2025-64170 sudo-rs: sudo-rs: Partial password reveal is possible after timeout [fedora-41] [ 2 ] Bug #2414776 - CVE-2025-64517 sudo-rs: Authentication bypass in timestamp [fedora-41]
[ 1 ] Bug #2414748 - CVE-2025-64170 sudo-rs: sudo-rs: Partial password reveal is possible after timeout [fedora-41] [ 2 ] Bug #2414776 - CVE-2025-64517 sudo-rs: Authentication bypass in timestamp [fedora-41]
This update can be installed with the "dnf" update program. Use su -c 'dnf upgrade --advisory FEDORA-2025-ada7909175' at the command line. For more information, refer to the dnf documentation available at
The full story
This article is one source in a clustered incident — the cluster page carries the summary, timeline and every other outlet covering it.
