Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
Python 2.6 through 3.2 creates ~/.pypirc with world-readable permissions before changing them after data has been written, which introduces a race condition that allows local users to obtain a username and password by reading this file.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
python ‘distutils’ 组件本地竞争条件漏洞
Vulnerability Description
Python是Python软件基金会的一套开源的、面向对象的程序设计语言。该语言具有可扩展、支持模块和包、支持多种平台等特点。 Python 2.6至3.2版本在distutils组件创建.pypirc的实现上存在本地竞争条件漏洞。可以访问受害者主目录的攻击者可利用该漏洞绕过某些权限限制,泄露敏感信息。
CVSS Information
N/A
Vulnerability Type
N/A