Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
Uim 0.4.x before 0.4.9.1 and 0.5.0 and earlier does not properly handle the LIBUIM_VANILLA environment variable when a suid or sgid application is linked to libuim, such as immodule for Qt, which allows local users to gain privileges.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
UIM LibUIM 环境变量特权提升漏洞
Vulnerability Description
Uim 是支持多种语言的输入方法模组库。 Uim 0.4.x 0.4.9.1之前版本和0.5.0及之前版本在suid或sgid 应用程序连接到libuim时,例如Qt的immodule ,不能正确处理LIBUIM_VANILLA环境变量,可以使本地用户获得特权。
CVSS Information
N/A
Vulnerability Type
N/A