Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
GuixSD prior to Git commit 5e66574a128937e7f2fcf146d146225703ccfd5d used POSIX hard links incorrectly, leading the creation of setuid executables in "the store", violating a fundamental security assumption of GNU Guix.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
GuixSD 安全漏洞
Vulnerability Description
GuixSD是由GNU项目开发的一套GNU Linux操作系统的高级版本。该系统配备了GNU Guix包管理器、支持事务升级等,并提供了Guile Scheme API接口。 GuixSD Git commit 5e66574a128937e7f2fcf146d146225703ccfd5d之前的版本中存在安全漏洞,该漏洞源于程序没有正确的使用POSIX硬链接。攻击者可利用该漏洞在/gnu/store中创建setuid可执行性文件。
CVSS Information
N/A
Vulnerability Type
N/A