Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
Buffer overflow in the inotifytools_snprintf function in src/inotifytools.c in the inotify-tools library before 3.11 allows context-dependent attackers to execute arbitrary code via a long filename.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
inotify-tools inotifytools_snprintf()函数本地缓冲区溢出漏洞
Vulnerability Description
inotify-tools是一个C程序库和一些命令行工具用于管理Linux文件系统。 inotify-tools的实现上存在缓冲区溢出漏洞,本地攻击者可能通过使用了inotify-tools库的应用程序提升自己的权限。 inotify-tools代码文件src/inotifytools.c中的inotifytools_snprintf()函数存在缓冲区溢出漏洞,攻击者可以通过在特定目录中指定创建超长文件名的文件导致缓冲区溢出,从而执行任意指令。
CVSS Information
N/A
Vulnerability Type
N/A