A flaw was found in sudo in the handling of ipa_hostname, where ipa_hostname from /etc/sssd/sssd.conf was not propagated in sudo. Therefore, it leads to privilege mismanagement vulnerability in applications, where client hosts retain privileges even after retracting them.
https://www.sudo.ws/releases/legacy/#1.8.28
https://security.netapp.com/advisory/ntap-20240208-0001/
https://lists.debian.org/debian-lts-announce/2024/02/msg00002.html