Security Advisory
CVE-2008-3067
CVE vulnerability detail - eXtreme Datacenter Security Operations
Description
sudo in SUSE openSUSE 10.3 does not clear the stdin buffer when password entry times out, which might allow local users to obtain a password by reading stdin from the parent process after a sudo child process exits.