Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
LPRng in Red Hat Linux 7.0 and 7.1 does not properly drop memberships in supplemental groups when lowering privileges, which could allow a local user to elevate privileges.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
LPRng降低附加组权限失败漏洞
Vulnerability Description
CVE(CAN) ID: CVE-2001-0787 当LPRng守护程序初始化时,没有降低附加组的权限。因此,该守护程序和所有该守护 程序派生的子进程都会保留启动LPRng的进程所在的组。 在此之前以较低权限运行的进程或程序将以这个附加组的权限运行,而易受攻击的程序 一般都以较低的权限运行,由于没有降低附加组的权限,攻击者就很可能获得这些权 限,甚至是root权限。
CVSS Information
N/A
Vulnerability Type
N/A