Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
The insert_module function in runtime/staprun/staprun_funcs.c in the systemtap runtime tool (staprun) in SystemTap before 1.6 does not properly validate a module when loading it, which allows local users to gain privileges via a race condition between the signature validation and the module initialization.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
SystemTap模块加载竞争条件漏洞
Vulnerability Description
SystemTap 1.6之前的版本中的systemtap运行时间工具(staprun)中的runtime/staprun/staprun_funcs.c中的insert_module函数中存在漏洞,该漏洞源于当加载时未正确验证模块。本地攻击者利用该漏洞通过签名验证和模块初始化之间的竞争条件获得特权。
CVSS Information
N/A
Vulnerability Type
N/A