Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
The path autocompletion feature in Bash 4.4 allows local users to gain privileges via a crafted filename starting with a " (double quote) character and a command substitution metacharacter.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
Bash 安全漏洞
Vulnerability Description
Bash是美国软件开发者布莱恩-福克斯(Brian J. Fox)为GNU计划而编写的一个Shell(命令语言解释器),它运行于类Unix操作系统中(Linux系统的默认Shell),并能够从标准输入设备或文件中读取、执行命令,同时也结合了一部分ksh和csh的特点。 Bash 4.4版本中的path autocompletion功能存在安全漏洞。本地攻击者可借助特制的文件名利用该漏洞获取权限。
CVSS Information
N/A
Vulnerability Type
N/A