Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
posix/JackSocket.cpp in libjack in JACK2 1.9.1 through 1.9.12 (as distributed with alsa-plugins 1.1.7 and later) has a "double file descriptor close" issue during a failed connection attempt when jackd2 is not running. Exploitation success depends on multithreaded timing of that double close, which can result in unintended information disclosure, crashes, or file corruption due to having the wrong file associated with the file descriptor.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
JACK2 资源管理错误漏洞
Vulnerability Description
JACK2是一款低延迟音频服务器。 JACK2 1.9.1版本至1.9.12版本中的libjack的posix/JackSocket.cpp文件存在安全漏洞。攻击者可利用该漏洞泄露信息、造成文件损坏或造成其他危害。
CVSS Information
N/A
Vulnerability Type
N/A