Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
The LockServer function in os/utils.c in X.Org xserver before 1.11.2 allows local users to determine the existence of arbitrary files via a symlink attack on a temporary lock file, which is handled differently if the file exists.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
X.Org xserver ‘LockServer’函数后置链接漏洞
Vulnerability Description
X.Org是X.Org基金会运作的一个对X Window系统的官方参考实现,是开源的自由软件。 X.Org xserver 1.11.2之前版本中的os/utils.c中的LockServer函数中存在漏洞。本地攻击者可利用该漏洞通过一个临时锁定文件(如果文件存在处理不同)的符号链接攻击,确定任意文件的存在。
CVSS Information
N/A
Vulnerability Type
N/A