Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
In Gentoo Portage before 3.0.47, there is missing PGP validation of executed code: the standalone emerge-webrsync downloads a .gpgsig file but does not perform signature verification. Unless emerge-webrsync is used, Portage is not vulnerable.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
Gentoo Portage 安全漏洞
Vulnerability Description
Gentoo是Gentoo基金会的一套开源的Linux系统。 Gentoo Portage 3.0.47之前版本存在安全漏洞,该漏洞源于缺少执行代码的 PGP 验证。
CVSS Information
N/A
Vulnerability Type
N/A