Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
Race condition in pcsd in PCS 0.9.139 and earlier uses a global variable to validate usernames, which allows remote authenticated users to gain privileges by sending a command that is checked for security after another user is authenticated.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
PCS 竞争条件问题漏洞
Vulnerability Description
PCS是ClusterLabs开源的一个 Corosync 和 Pacemaker 配置工具。 PCS 0.9.139及之前版本存在竞争条件问题漏洞,该漏洞源于程序使用全局变量验证用户名。远程攻击者可通过发送已执行安全检查的命令利用该漏洞获取权限。
CVSS Information
N/A
Vulnerability Type
N/A