Lucene search

K
nvd[email protected]NVD:CVE-2007-3103
HistoryJul 15, 2007 - 10:30 p.m.

CVE-2007-3103

2007-07-1522:30:00
CWE-59
web.nvd.nist.gov
1

6.2 Medium

CVSS2

Attack Vector

LOCAL

Attack Complexity

HIGH

Authentication

NONE

Confidentiality Impact

COMPLETE

Integrity Impact

COMPLETE

Availability Impact

COMPLETE

AV:L/AC:H/Au:N/C:C/I:C/A:C

6 Medium

AI Score

Confidence

Low

0.0004 Low

EPSS

Percentile

0.4%

The init.d script for the X.Org X11 xfs font server on various Linux distributions might allow local users to change the permissions of arbitrary files via a symlink attack on the /tmp/.font-unix temporary file.

Affected configurations

NVD
Node
fedoraprojectfedora_coreMatch6.0
OR
redhatenterprise_linuxMatch4.0as
OR
redhatenterprise_linuxMatch4.0es
OR
redhatenterprise_linuxMatch4.0ws
OR
redhatenterprise_linux_desktopMatch4.0
OR
redhatlinux

References

6.2 Medium

CVSS2

Attack Vector

LOCAL

Attack Complexity

HIGH

Authentication

NONE

Confidentiality Impact

COMPLETE

Integrity Impact

COMPLETE

Availability Impact

COMPLETE

AV:L/AC:H/Au:N/C:C/I:C/A:C

6 Medium

AI Score

Confidence

Low

0.0004 Low

EPSS

Percentile

0.4%