The init.d script for the X.Org X11 xfs font server on various Linux distributions might allow local users to change the permissions of arbitrary files via a symlink attack on the /tmp/.font-unix temporary file.
References
Configurations
Configuration 1 (hide)
|
Information
Published : 2007-07-15 15:30
Updated : 2018-10-16 09:47
NVD link : CVE-2007-3103
Mitre link : CVE-2007-3103
JSON object : View
CWE
CWE-59
Improper Link Resolution Before File Access ('Link Following')
Products Affected
fedoraproject
- fedora_core
redhat
- linux
- enterprise_linux_desktop
- enterprise_linux