Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
A certain Debian patch for GNU GRUB uses world-readable permissions for grub.cfg, which allows local users to obtain password hashes, as demonstrated by reading the password_pbkdf2 directive in the file.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
GNU GRUB Debian补丁包权限许可和访问控制漏洞
Vulnerability Description
GNU GRUB(GRand Unified Bootloader)是GNU计划开发的一套GNU项目的启动引导程序,它允许用户在计算机内同时拥有多个操作系统,并在计算机启动时选择希望运行的操作系统。 GNU GRUB Debian补丁包中存在安全漏洞,该漏洞源于程序对文件使用全局可读权限。本地攻击者可利用该漏洞获取密码哈希值。
CVSS Information
N/A
Vulnerability Type
N/A