CVE-2019-14287: Sudo Bug Allows Restricted Users to Run Commands as Root
sensorstechforum.com
sensorstechforum.com
Pretty much all the headlines I saw on this were overstating or stretching the impact.
But I don't think this is a rare situation. For example you can allow a bunch of users to restart and change a buildbot infrastructure (which runs as its own user, not root).
I feel like linux as a true multi-user system, especially to the level of having sudo access, is such a minority use case that I would never actually trust it in production.
There are mundane use cases for this.
Unpopular opinion: you're right, the vast majority of the time a workstation is single-user, in which case the whole mess isn't worth the hassle and one might as well only have a root account. Heresy! But I've never heard a plausible reasoning why it's fine for $BAD_THING to happen to my home directory, but not /. There's even an xkcd[0] to this effect, which means it must be true.
Hell, for that matter:
echo "alias sudo='sudo evil_command; sudo'" >> ~/.bashrc
is a pretty practical privilege escalation attack for 99% of systems with sudo. I don't think it's worth it.
Polkit isn't great, but it's also been given the hard job of trying to retrofit policy based security to a system that was not designed with that in mind. But with sudo, so many commands in linux are such a swiss army knife of options that I think its incredibly easy to open up priviledge escalation by adding a seemingly innocent command to somebodies sudoers.