MEDIUM · 6.2

CVE-2007-3103

The init.d script for the X.Org X11 xfs font server on various Linux distributions might allow local users to change the permissions of arbitrary files via a symlink attack on the /tmp/.font-unix temp...

Vulnerability Description

The init.d script for the X.Org X11 xfs font server on various Linux distributions might allow local users to change the permissions of arbitrary files via a symlink attack on the /tmp/.font-unix temporary file.

CVSS Score

6.2

MEDIUM

AV:L/AC:H/Au:N/C:C/I:C/A:C
Confidentiality
COMPLETE
Integrity
COMPLETE
Availability
COMPLETE

Affected Products

VendorProductVersions
FedoraprojectFedora Core6.0
RedhatEnterprise Linux4.0
RedhatEnterprise Linux Desktop4.0
RedhatLinuxAll versions

Related Weaknesses (CWE)

References

FAQ

What is CVE-2007-3103?

CVE-2007-3103 is a vulnerability with a CVSS score of 6.2 (MEDIUM). The init.d script for the X.Org X11 xfs font server on various Linux distributions might allow local users to change the permissions of arbitrary files via a symlink attack on the /tmp/.font-unix temp...

How severe is CVE-2007-3103?

CVE-2007-3103 has been rated MEDIUM with a CVSS base score of 6.2/10. Review the CVSS metrics above for detailed severity breakdown.

Is there a patch for CVE-2007-3103?

Check the references section above for vendor advisories and patch information. Affected products include: Fedoraproject Fedora Core, Redhat Enterprise Linux, Redhat Enterprise Linux Desktop, Redhat Linux.