systemd是德国Lennart Poettering个人开发者的一款基于Linux的系统和服务管理器。该产品兼容了SysV和LSB的启动脚本,且提供了一个用来表示系统服务间依赖关系的框架。 systemd 存在安全漏洞,该漏洞是由于systemd-tmpfiles中不受控制的递归而存在的。本地用户可以在tmp文件夹中创建多个嵌套目录,case systemd会在系统启动时崩溃。该漏洞允许本地用户执行拒绝服务(DoS)攻击。
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| - | systemd | Fixed in v251-rc1 | - |
|
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2022-24381 | 7.5 HIGH | Denial of Service (DoS) |
| CVE-2022-25888 | 7.5 HIGH | Denial of Service (DoS) |
| CVE-2022-25761 | 7.5 HIGH | Denial of Service (DoS) |
| CVE-2022-24298 | 7.5 HIGH | Denial of Service (DoS) |
| CVE-2022-21208 | 7.5 HIGH | Denial of Service (DoS) |
| CVE-2022-25231 | 7.5 HIGH | Denial of Service (DoS) |
| CVE-2022-25304 | 7.5 HIGH | Denial of Service (DoS) |
| CVE-2022-25302 | 7.5 HIGH | Denial of Service (DoS) |
| CVE-2022-37428 | 6.5 MEDIUM | PowerDNS Recursor 安全漏洞 |
| CVE-2021-3839 | DPDK 缓冲区错误漏洞 | |
| CVE-2021-3690 | Red Hat JBoss Enterprise Application Platform资源管理错误漏洞 | |
| CVE-2022-35115 | IceWarp WebClient SQL注入漏洞 | |
| CVE-2020-35509 | Red Hat Keycloak 信任管理问题漏洞 | |
| CVE-2021-3827 | Red Hat Keycloak 授权问题漏洞 | |
| CVE-2021-3798 | openCryptoki 安全漏洞 | |
| CVE-2022-37111 | BlueCMS SQL注入漏洞 | |
| CVE-2022-37112 | BlueCMS SQL注入漏洞 | |
| CVE-2022-37113 | BlueCMS SQL注入漏洞 | |
| CVE-2022-37223 | jfinal cms SQL注入漏洞 | |
| CVE-2022-37199 | jfinal cms SQL注入漏洞 |
Showing top 20 of 54 CVEs. View all on vendor page → →
No comments yet