Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
opensysusers through 0.6 does not safely use eval on files in sysusers.d that may contain shell metacharacters. For example, it allows command execution via a crafted GECOS field whereas systemd-sysusers (a program with the same specification) does not do that.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
opensysusers 代码注入漏洞
Vulnerability Description
opensysusers是开源的一个软件包。是 systemd-sysusers 的另一种实现,可以在安装或未安装 systemd 的系统上运行。 opensysusers 0.6之前版本存在代码注入漏洞,该漏洞主要对某些文件使用了不当的命令造成安全风险。
CVSS Information
N/A
Vulnerability Type
N/A