Linux Init Default Umask Vulnerability...

- AV AC AU C I A
发布: 2001-07-16
修订: 2025-04-13

Certain versions of the Linux kernel create the init process with umask set to 0000. The initialization scripts that ship with some linux distributions rely on inheriting a safe umask from 'init' and execute without setting it explicitly. This condition opens up the possibility for security vulnerabilities because the init scripts create sensitive files. It has been demonstrated that there is at least one way for an attacker to gain root privileges due to this condition.

0%
暂无可用Exp或PoC
当前有0条受影响产品信息