In case anyone wonders: these are the same bugs reported (and fixed) last week, not new ones.
Damn, a cvss score of 9.3 is wild
So ‘sudo-rs’ guys were right?
The vulnerability in question would've still happened if written in rust, it was not a memory leak.
More an instance of feature creep, as the solution was to remove the functionality.
Would something like 'doas' have the same issue?
I would rather go with a completely new approach like the one of run0.
In case anyone wonders: these are the same bugs reported (and fixed) last week, not new ones.