CVE-2010-0427
sudo 1.6.x before 1.6.9p21, when the runas_default option is used, does not properly set group memberships, which allows local users to gain privileges via a sudo command.
Date published : 2010-02-25
http://www.securityfocus.com/archive/1/514489/100/0/threaded