Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
Tunnelblick 3.3beta20 and earlier relies on a test for specific ownership and permissions to determine whether a program can be safely executed, which allows local users to bypass intended access restrictions and gain privileges via a (1) user-mountable image or (2) network share.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
Tunnelblick 安全绕过漏洞
Vulnerability Description
Tunnelblick 3.3beta20版本和早期版本中存在漏洞,该漏洞源于依赖测试特定的所有权和权限去确定程序是否可以安全执行。本地攻击者可利用该漏洞通过(1)user-mountable图像或(2)网络共享,绕过目地访问限制并获取特权。
CVSS Information
N/A
Vulnerability Type
N/A