Mandriva Linux Security Advisory 2010-175 - Sudo 1.7.0 through 1.7.4p3, when a Runas group is configured, does not properly handle use of the -u option in conjunction with the -g option, which allows local users to gain privileges via a command line containing a -u root sequence. The updated packages have been patched to correct this issue.
a2bbd5c115c98d917d40c978584d00aaf8a43d678490fb1e3a41bf3c453d8677