Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
snap-confine as included in snapd before 2.39 did not guard against symlink races when performing the chdir() to the current working directory of the calling user, aka a "cwd restore permission bypass."
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
Canonical snapd 后置链接漏洞
Vulnerability Description
Canonical snapd是英国科能(Canonical)公司的一套软件部署和包管理系统。 Canonical snapd 2.39之前版本中的snap-confine存在安全漏洞。攻击者可利用该漏洞访问到容器的任意目录。
CVSS Information
N/A
Vulnerability Type
N/A