CDRTools RSCSI Debug File Arbitrary...

- AV AC AU C I A
发布: 2003-08-01
修订: 2025-04-13

It has been reported that the rscsi utility may provide for the modification of ownership and the corruption of arbitrary attacker specified files. It has been reported that a local attacker may invoke the rscsi utility to corrupt or seize group ownership of an attacker specified file. Because the rscsi utility is installed with setuid 'root' permissions by default, a local attacker may harness this vulnerability to achieve elevated privileges.

0%
当前有1条漏洞利用/PoC
当前有0条受影响产品信息