CVE-2013-1775: Apple Mac OS X

Medium severity, CVSS 6.9. EPSS: 3.2% chance of exploitation in the next 30 days.

sudo 1.6.0 through 1.7.10p6 and sudo 1.8.0 through 1.8.6p6 allows local users or physically proximate attackers to bypass intended time restrictions and retain privileges without re-authenticating by setting the system clock and sudo user timestamp to the epoch.

Affected products

  • Apple Mac OS X: up to and including 10.10.4
  • Todd Miller Sudo: version 1.6 only; version 1.6.1 only; version 1.6.2 only; version 1.6.2p3 only; version 1.6.3 only; version 1.6.3_p7 only; …

Published 2013-03-05. Last modified 2026-06-16.