Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
procps-ng before version 3.3.15 is vulnerable to a local privilege escalation in top. If a user runs top with HOME unset in an attacker-controlled directory, the attacker could achieve privilege escalation by exploiting one of several vulnerabilities in the config_file() function.
CVSS Information
N/A
Vulnerability Type
从非可信控制范围包含功能例程
Vulnerability Title
procps-ng 权限许可和访问控制问题漏洞
Vulnerability Description
procps/procps-ng是一款使用在Linux平台中的用于提供proc文件系统进程信息的实用程序。 procps-ng 3.3.15之前版本中的top的‘config_file()’函数存在提权漏洞。本地攻击者可利用该漏洞提升权限。
CVSS Information
N/A
Vulnerability Type
N/A