Bugzilla – Bug 919
add regex style matching to sudoers
Last modified: 2022-02-03 19:34:00 MST
A patch got submitted to the Debian BTS with the following text: Entries in sudoers files that include * do not behave like shell globs. When mistakenly used in the argument list it can expand to protected content, such as /etc/shadow. Most users do not expect this. This patch adds regex style matching to sudoers to improve security and tighten the available input. The complete bug log including links to his code can be found at https://bugs.debian.org/945366
*** This bug has been marked as a duplicate of bug 578 ***