Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
The Standard security setting for Mandrake-Security package (msec) in Mandrake 8.2 installs home directories with world-readable permissions, which could allow local users to read other user's files.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
Mandrake 8.2 Msec不安全默认权限漏洞
Vulnerability Description
Mandrake是一款开放源代码的Linux操作系统。 Mandrake 8.2的Mandrake-Security package (msec)包安装时存在漏洞,本地攻击者可以利用此漏洞获得敏感信息。 Mandrake 8.2的Mandrake-Security package (msec)包默认情况下HOME目录以全局可读方式安装,这导致在多用户使用的环境下产生问题,任意用户可以访问其他用户信息。另外如果手工改变了HOME目录的全局可读属性,msec也会自动重新复位HOME目录属性。
CVSS Information
N/A
Vulnerability Type
N/A