Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
A vulnerability was found in logrotate in how the state file is created. The state file is used to prevent parallel executions of multiple instances of logrotate by acquiring and releasing a file lock. When the state file does not exist, it is created with world-readable permission, allowing an unprivileged user to lock the state file, stopping any rotation. This flaw affects logrotate versions before 3.20.0.
CVSS Information
N/A
Vulnerability Type
关键资源的不正确权限授予
Vulnerability Title
logrotate 安全漏洞
Vulnerability Description
logrotate是一个实用程序。旨在简化生成大量日志文件的系统的管理。 logrotate 存在安全漏洞,该漏洞源于 logrotate 使用状态文件的方式存在问题。攻击者利用该漏洞可以锁定状态文件,停止任务轮换。
CVSS Information
N/A
Vulnerability Type
N/A