Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
Mail::Audit module in libmail-audit-perl 2.1-5, when logging is enabled without a default log file specified, uses predictable log filenames, which allows local users to overwrite arbitrary files via a symlink attack on the [PID]-audit.log temporary file.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
Mail-Audit不安全临时文件创建漏洞
Vulnerability Description
libmail-audit-perl 2.1-5中的Mail::Audit模块,在未指定默认的日志文件情况下,启用日志功能时,使用可预计的日志文件名,本地用户可以通过对[PID]-audit.log临时文件的symlink攻击来重写任意文件。
CVSS Information
N/A
Vulnerability Type
N/A