Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
Race condition in the create_lockpath function in policyd-weight 0.1.14 beta-16 allows local users to modify or delete arbitrary files by creating the LOCKPATH directory, then modifying it after the symbolic link check occurs. NOTE: this is due to an incomplete fix for CVE-2008-1569.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
Policyd-weight create_lockpath函数 竞争条件错误漏洞
Vulnerability Description
policyd-weight 0.1.14 beta-16中的create_lockpath函数存在竞争条件,它允许本地用户通过先创建一个LOCKPATH目录,然后在象征性链接检验出现后再修改它,从而修改或删除任意文件。
CVSS Information
N/A
Vulnerability Type
N/A