Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
In Keepalived through 2.2.4, the D-Bus policy does not sufficiently restrict the message destination, allowing any user to inspect and manipulate any property. This leads to access-control bypass in some situations in which an unrelated D-Bus system service has a settable (writable) property
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
Keepalived 安全漏洞
Vulnerability Description
Keepalived是Keepalived组织的一套使用C语言编写的路由软件。该软件主要用于负载均衡和故障检测等。 Keepalived 2.2.4 存在安全漏洞,该漏洞源于D-Bus 策略没有充分限制消息目的地,允许任何用户检查和操作任何属性。这会在某些情况下导致访问控制绕过,其中不相关的 D-Bus 系统服务具有可设置(可写)属性。
CVSS Information
N/A
Vulnerability Type
N/A