Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
gnomesu-pam-backend in libgnomesu 1.0.0 prints an error message but proceeds with the non-error code path upon failure of the setgid or setuid function, which allows local users to gain privileges by leveraging access to two unprivileged user accounts, and running many processes under one of these accounts.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
libgnomesu 'setgid()'或'setuid()'本地权限提升漏洞
Vulnerability Description
libgnomesu 1.0.0版本的gnomesu-pam-backend复制了一条错误消息但在setgid或setuid函数执行失败的基础上继续执行非错误代码路径。本地用户可通过访问两个无权限用户账户获取特权,并在这些用户中运行多个进程。
CVSS Information
N/A
Vulnerability Type
N/A