Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
SUSE Linux before 9.1 and SUSE Linux Enterprise Server before 9 do not properly check commands sent to CD devices that have been opened read-only, which could allow local users to conduct unauthorized write activities to modify the firmware of associated SCSI devices.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
Suse Linux Kernel 非授权固件修改漏洞
Vulnerability Description
SuSE Linux是一款开放源代码Linux系统。 SuSE Linux9.1之前版本及SUSE Linux Enterprise Server9之前版本中存在固件修改漏洞。 对SCSI设备接口的管理存在问题,由于没有对发送给CD设备的命令进行检查,本地攻击者可利用此漏洞对SCSI设备固件进行授权修改。
CVSS Information
N/A
Vulnerability Type
N/A