Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
cons.saver in Midnight Commander (mc) 4.5.42 and earlier does not properly verify if an output file descriptor is a TTY, which allows local users to corrupt files by creating a symbolic link to the target file, calling mc, and specifying that link as a TTY argument.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
Midnight Commander (mc)cons.saver漏洞
Vulnerability Description
Midnight Commander (mc) 4.5.42及其早期版本的cons.saver不正确检查输出文件描述符是否是TTY。本地用户可以通过创建对目标文件符号链接,调用mc,并指定链接为TTY参数破坏文件。
CVSS Information
N/A
Vulnerability Type
N/A