USN-8894-1: poppler vulnerabilities
USN-8894-1
It was discovered that Sudo did not properly handle time-based access restrictions when sudoers rules used NOTBEFORE or NOTAFTER with timestamps omitting the trailing timezone indicator. A local attacker could possibly use this issue to execute commands outside the intended time window by manipulating the TZ environment variable.
A separate affected-products list was not included in the collected bulletin.
Separate remediation guidance was not included in the collected bulletin.
No CVE identifiers were listed in the collected bulletin.
The publication date reported by the vendor.
We collected the advisory from the official source.