Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
SystemTap 1.7, 1.6.7, and probably other versions, when unprivileged mode is enabled, allows local users to obtain sensitive information from kernel memory or cause a denial of service (kernel panic and crash) via vectors related to crafted DWARF data, which triggers a read of an invalid pointer.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
SystemTap 资源管理错误漏洞
Vulnerability Description
SystemTap是一套Linux内核诊断工具。该工具允许从运行的Linux内核快速和安全的获取信息。 SystemTap 1.7和1.6.7版本中存在无效的指针读取漏洞,该漏洞源于当程序处理调试信息时存在错误。当启用非特权模式时,本地攻击者可借助特制的DWARF数据利用该漏洞获取内核内存的敏感信息,或造成拒绝服务(内核错误和崩溃)。
CVSS Information
N/A
Vulnerability Type
N/A