Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
create_lazarus_export_tgz.sh in lazarus 0.9.24 allows local users to overwrite or delete arbitrary files via a symlink attack on a (1) /tmp/lazarus.tgz temporary file or a (2) /tmp/lazarus temporary directory.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
lazarus 'create_lazarus_export_tgz.sh'任意文件重写漏洞
Vulnerability Description
Lazarus是一个免费并且开源的RAD(快速应用开发)开发工具,它基于同样免费开源的FreePascal(object pascal)编译器。 lazarus 0.9.24版本中的create_lazarus_export_tgz.sh允许本地用户借助一个对(1)/tmp/lazarus.tgz临时文件或(2)/tmp/lazarus临时目录的symlink攻击,来重写或删除任意文件。
CVSS Information
N/A
Vulnerability Type
N/A