Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
Problematic permissions in hylafax+ packaging allow escalation from uucp to other users
Vulnerability Description
A Incorrect Default Permissions vulnerability in the packaging of hylafax+ of openSUSE Leap 15.2, openSUSE Leap 15.1, openSUSE Factory allows local attackers to escalate from user uucp to users calling hylafax binaries. This issue affects: openSUSE Leap 15.2 hylafax+ versions prior to 7.0.2-lp152.2.1. openSUSE Leap 15.1 hylafax+ version 5.6.1-lp151.3.7 and prior versions. openSUSE Factory hylafax+ versions prior to 7.0.2-2.1.
CVSS Information
CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:L/I:L/A:L
Vulnerability Type
缺省权限不正确
Vulnerability Title
SUSE openSUSE hylafax+ 安全漏洞
Vulnerability Description
openSUSE是德国SUSE公司的一套基于Linux的自由操作系统与开源社区项目。hylafax+是其中的一个用于类Unix系统的传真服务器。 SUSE openSUSE Leap 15.2版本、openSUSE Leap 15.1版本和openSUSE Factory中的hylafax+存在安全漏洞,该漏洞源于程序没有正确设置默认权限。本地攻击者可利用该漏洞提升权限,调用hylafax二进制文件。以下产品及版本受到影响:hylafax+ 7.0.2-lp152.2.1之前版本(openSUSE Lea
CVSS Information
N/A
Vulnerability Type
N/A