Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
Amazon AWS amazon-ssm-agent before 3.1.1208.0 creates a world-writable sudoers file, which allows local attackers to inject Sudo rules and escalate privileges to root. This occurs in certain situations involving a race condition.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
Amazon AWS 安全漏洞
Vulnerability Description
Amazon AWS是美国亚马逊(Amazon)公司的一款云计算平台,向个人、企业和政府提供一系列包括信息技术基础架构和应用的服务,如存储、数据库、计算、机器学习等等。 Amazon AWS amazon-ssm-agent 3.1.1208.0之前版本存在安全漏洞,攻击者利用该漏洞可以实现注入 Sudo 规则并将权限提升到 root。
CVSS Information
N/A
Vulnerability Type
N/A