Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
lppasswd in CUPS 1.1.22, when run in environments that do not ensure that file descriptors 0, 1, and 2 are open when lppasswd is called, does not verify that the passwd.new file is different from STDERR, which allows local users to control output to passwd.new via certain user input that triggers an error message.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
CUPS lppasswd 弱安全机制漏洞
Vulnerability Description
CUPS(Common UNIX Printing System)是一个类Unix操作系统的组合式印刷系统,允许一台电脑作为打印服务器。 CUPS 1.1.22中的llpaswd程序存在漏洞。 在当lppassw无法确保文件描述符0, 1, 和 2 打开的环境中运行时,lppasswd不会核实passwd.new文件不同于STDERR。这使得本地用户可以借助特定用户输入,触发错误,从而控制passwd.new的输出。
CVSS Information
N/A
Vulnerability Type
N/A