Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
The do_dump_data function in utils/opcontrol in OProfile 0.9.6 and earlier might allow local users to create or overwrite arbitrary files via a crafted --session-dir argument in conjunction with a symlink attack on the opd_pipe file, a different vulnerability than CVE-2011-1760.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
OProfile utils/opcontrol do_dump_data函数任意文件重写漏洞
Vulnerability Description
OProfile 0.9.6及早期版本的utils/opcontrol中的do_dump_data函数中存在漏洞。本地用户可以借助与opd_pipe文件上的符号链接攻击相关联的特制--session-dir参数,创建或者重写任意文件。
CVSS Information
N/A
Vulnerability Type
N/A