漏洞信息
尽管我们使用了先进的大模型技术,但其输出仍可能包含不准确或过时的信息。神龙努力确保数据的准确性,但请您根据实际情况进行核实和判断。
Vulnerability Title
SMB printer settings don't escape characters in passwords properly
Vulnerability Description
In yast2-printer up to and including version 4.0.2 the SMB printer settings don't escape characters in passwords properly. If a password with backticks or simliar characters is supplied this allows for executing code as root. This requires tricking root to enter such a password in yast.
CVSS Information
N/A
Vulnerability Type
OS命令中使用的特殊元素转义处理不恰当(OS命令注入)
Vulnerability Title
yast2-printer 输入验证错误漏洞
Vulnerability Description
yast2-printer是一个打印机配置模块。 yast2-printer 4.0.2及之前版本中存在安全漏洞,该漏洞源于SMB打印机设备没有正确地转义密码中的字符。攻击者可利用该漏洞以root身份执行代码。
CVSS Information
N/A
Vulnerability Type
N/A