Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
libutil in OpenSSH on FreeBSD 4.4 and earlier does not drop privileges before verifying the capabilities for reading the copyright and welcome files, which allows local users to bypass the capabilities checks and read arbitrary files by specifying alternate copyright or welcome files.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
FreeBSD OpenSSH libutil读取任意文漏洞
Vulnerability Description
FreeBSD 4.4以及之前版本中OpenSSH的libutil在核查阅读版权和欢迎文件功能之前不能下降特权。本地用户通过指定替代版权或者欢迎文件绕过功能检查并读取任意文件。
CVSS Information
N/A
Vulnerability Type
N/A