Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
The Gentoo Nullmailer package before 1.11-r2 uses world-readable permissions for /etc/nullmailer/remotes, which allows local users to obtain SMTP authentication credentials by reading the file.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
Gentoo Linux nullmailer Package ‘/etc/nullmailer/remotes’不安全文件权限漏洞
Vulnerability Description
Gentoo Nullmailer是Gentoo基金会的一款简单的转发(Relay-only)邮件传输代理。 Gentoo Nullmailer程序包1.11版本中存在安全漏洞,该漏洞源于程序对/etc/nullmailer/remotes目录使用全局可读权限。本地攻击者可通过读取文件利用该漏洞获取身份凭证。
CVSS Information
N/A
Vulnerability Type
N/A