Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
Race condition in cpio 2.6 and earlier allows local users to modify permissions of arbitrary files via a hard link attack on a file while it is being decompressed, whose permissions are changed by cpio after the decompression is complete.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
CPIO CHMod文件权限修改竞态条件漏洞
Vulnerability Description
cpio 2.6以及较早版本中的竞争状况,本地用户可以通过对正在解压缩的文件实施硬链接攻击来修改任意文件的权限,但其文件的权限可以在解压缩完成后由cpio修改。
CVSS Information
N/A
Vulnerability Type
N/A