Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
The (1) configure and (2) config.guess scripts in GNU troff (aka groff) 1.20.1 on Openwall GNU/*/Linux (aka Owl) improperly create temporary files upon a failure of the mktemp function, which makes it easier for local users to overwrite arbitrary files via a symlink attack on a temporary file.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
GNU troff后置链接漏洞
Vulnerability Description
Groff (GNU Troff) 是Troff 的最新开放源码实现,Troff 是从相同的输入源为各种设备生成打印和屏幕文档的一种文档准备系统。 基于Openwall GNU/*/Linux(Owl)的GNU troff(groff) 1.20.1版本中的configure和config.guess脚本程序在mktemp函数执行失败的基础之上不适当的创建了临时文件。本地用户可借助临时文件中的符号链接攻击重写任意文件。
CVSS Information
N/A
Vulnerability Type
N/A