GCP-2021-001
<strong>Published:</strong><br/><table class="fixed"> <thead> <tr> <th width="70%">Description</th> <th>Severity</th> <th>Notes</th> </tr> </thead> <tbody> <tr> <td> <p>A vulnerability was recently discovered in the Linux utility <code dir="ltr" translate="no">sudo</code>, described in <a href="https://cve.mitre.org/cgi-bin/cvename.cgi?name=2021-3156">CVE-2021-3156</a>, that might allow an attacker with unprivileged local shell access on a system with <code dir="ltr" translate="no">sudo</code> installed to escalate their privileges to root on the system.</p> <h4 data-text="Compute Engine impact" id="compute-engine-impact" tabindex="-1">Compute Engine impact</h4> <p>The underlying infrastructure that runs Compute Engine is not impacted by this vulnerability. Compute Engine VMs running Linux should consider updating their guest operating system. For example, if you use a <a href="https://docs.cloud.google.com/container-optimized-os/docs/release-notes">Container-Optimized OS</a>, we recommend you update to one of the following images: cos-85-13310-1209-7, cos-81-12871-1245-6, cos-dev-89-16091-0-0, or later.</p> </td> <td> None </td> <td> <ul> <li><a href="https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2021-3156" target="mitre">CVE-2021-3156</a></li> </ul> </td> </tr> </tbody> </table>
Timeline
- Feb 13, 2025 PoC Published
- Apr 14, 2026 CVE Published