Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
Race condition in hawtjni-runtime/src/main/java/org/fusesource/hawtjni/runtime/Library.java in HawtJNI before 1.8, when a custom library path is not specified, allows local users to execute arbitrary Java code by overwriting a temporary JAR file with a predictable name in /tmp.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
HawtJNI 本地提权漏洞
Vulnerability Description
HawtJNI是一个代码生成器,它主要用于生成JNI代码以实现Java本地方法。 HawtJNI 1.8之前的版本中的hawtjni-runtime/src/main/java/org/fusesource/hawtjni/runtime/Library.java文件中存在安全漏洞。本地攻击者可通过在/tmp目录下带有可预测名的临时JAR文件上的符号链接攻击,利用该漏洞执行任意Java代码。
CVSS Information
N/A
Vulnerability Type
N/A