Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
A certain Red Hat patch for acpid 1.0.4 effectively triggers a call to the open function with insufficient arguments, which might allow local users to leverage weak permissions on /var/log/acpid, and obtain sensitive information by reading this file, cause a denial of service by overwriting this file, or gain privileges by executing this file.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
Tim_hockin acpid 权限许可和敏感信息泄露漏洞
Vulnerability Description
ACPID 是一个非常灵活、完全可扩展的ACPI 事件递送守护程序。acpid 1.0.4中的一个特定的Red Hat补丁能有效引发一个具有不充分参数的开放函数命令,本地用户通过读取此文件获得/var/log/acpid的脆弱许可,并获得敏感信息,复写此文件引起一个拒绝服务,或执行此文件获得特权。
CVSS Information
N/A
Vulnerability Type
N/A