CNNVD-202512-5080 Information

CNNVD ID

CNNVD-202512-5080

CVE-2025-69257

  • CNNVD Published: 2025-12-30

Description (Chinese)

The Shit是AsfhtgkDavid个人开发者的一个用于自动检测和修复shell命令中的常见错误的命令行实用程序。 The Shit 0.1.1之前版本存在安全漏洞,该漏洞源于以高权限运行时未验证配置文件和规则的所有权,可能导致权限提升。

Description (English)

The Shit is a practical command line for automatic detection and repair of common errors in shell commands by Asfhtgk David ’ s personal developer. There is a security loophole in the pre-Shit 0.1.1, which stems from the failure to verify ownership of the configuration file and rules when running with high privileges, which may lead to an increase in privileges.

Hazard Level

High

Vulnerability Type

其他

Affected Vendor

个人开发者

Published

2025-12-30

Last Modified

2026-02-24

References

https://github.com/AsfhtgkDavid/theshit/commit/8e0b565e7876a83b0e1cfbacb8af39dadfdcc500 https://github.com/AsfhtgkDavid/theshit/security/advisories/GHSA-95qg-89c2-w5hj

Patch

https://github.com/AsfhtgkDavid/theshit

Share on: