Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
ipmievd (aka the IPMI event daemon) in OpenIPMI, as used in the ipmitool package 1.8.11 in Red Hat Enterprise Linux (RHEL) 6, Debian GNU/Linux, Fedora 16, and other products uses 0666 permissions for its ipmievd.pid PID file, which allows local users to kill arbitrary processes by writing to this file.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
IMPItool拒绝服务漏洞
Vulnerability Description
IMPItool中存在拒绝服务漏洞,该漏洞源于ipmievd用不安全的权限创建PID文件。攻击者可利用该漏洞通过交换储存在PID文件中的进程ID来终止其它进程。IMPItool 1.8.11版本中存在该漏洞,其他版本也可能受影响。
CVSS Information
N/A
Vulnerability Type
N/A