腾讯 AI-Infra-Guard 的 skill-scan 组件通过将 目录以及 、 、 扩展名硬编码到多个扫描层面的跳过列表中,从而将编译后的 Python 字节码文件排除在分析之外。攻击者可以分发包含良性 Python 源文件与恶意编译字节码的技能包,这些字节码会在导入时执行,而扫描器却报告其为安全判定。当运维人员安装该技能时,恶意代码即可被执行,从而实现代码执行攻击。
| Vendor | Product | Version Range | Status |
|---|---|---|---|
| Tencent | AI-Infra-Guard | < 4.5.2 |
affected |
4.6.0≤ 4.6.0 |
affected | ||
| Tencent | aig-skill-scan | ≤ 0.2.1 |
affected |
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| Tencent | AI-Infra-Guard | 0 ~ 4.5.2 | - |
|
| Tencent | aig-skill-scan | 0 ~ 0.2.1 | - |
|
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POCNo comments yet