Red Hat libuser是美国红帽(Red Hat)公司的一个用于操作和管理用户和组账户的标准接口库。 usermode程序包中的userhelper程序中使用的libuser 0.56.13-5及之前版本和0.60-7之前0.60版本中存在安全漏洞,该漏洞源于程序直接修改/etc/passwd文件。本地攻击者可通过在执行修改操作时触发错误利用该漏洞造成拒绝服务(不一致的文件状态)。
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| - | n/a | n/a | - |
|
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2015-1818 | Red Hat JBoss BPM Suite dashbuilder XML外部实体漏洞 | |
| CVE-2015-2323 | Fortinet FortiOS 加密问题漏洞 | |
| CVE-2015-3228 | Artifex Software Ghostscript's/base/gsmalloc.c'远程数字错误漏洞 | |
| CVE-2015-3245 | Red Hat Enterprise Linux Server 输入验证错误漏洞 | |
| CVE-2015-3267 | Red Hat JBoss Operations Network 跨站脚本漏洞 | |
| CVE-2015-3626 | Fortinet FortiOS 跨站脚本漏洞 | |
| CVE-2015-4634 | Cacti SQL注入漏洞 | |
| CVE-2015-5176 | Red Hat JBoss Portal PortletBridge PortletRequestDispatcher 代码注入漏洞 | |
| CVE-2015-5369 | 多款Pulse Secure Pulse Connect Secure产品代码注入漏洞 | |
| CVE-2015-5522 | Tidy‘tmbstr.c’基于堆的缓冲区溢出漏洞 | |
| CVE-2015-5523 | Tidy 缓冲区溢出漏洞 | |
| CVE-2015-5965 | Fortinet FortiOS 输入验证漏洞 |
No comments yet