Re: did I miss something?
@Jim 59 - you didn't miss anything. The vulnerability is limited to users that could already utilize it. With that said, if an application got fired off with that user's rights and then escalated, then we might have a problem. :) As always on servers (regardless of OS), if you are on the physical console (or virtual physical for vm's), you should have a good reason for doing so.
Net takeaway - be sensible in your assigning of sudo rights, and be sensible in how you access your servers. That is nothing new to seasoned sysadmins.