CVE-2007-3103
- EPSS 0.9%
- Veröffentlicht 15.07.2007 22:30:00
- Zuletzt bearbeitet 16.06.2026 22:41:04
The init.d script for the X.Org X11 xfs font server on various Linux distributions might allow local users to change the permissions of arbitrary files via a symlink attack on the /tmp/.font-unix temporary file.
CVE-2007-0773
- EPSS 0.33%
- Veröffentlicht 26.06.2007 18:30:00
- Zuletzt bearbeitet 16.06.2026 22:36:15
The Linux kernel before 2.6.9-42.0.8 in Red Hat 4.4 allows local users to cause a denial of service (kernel OOPS from null dereference) via fput in a 32-bit ioctl on 64-bit x86 systems, an incomplete fix of CVE-2005-3044.1.
CVE-2007-3099
- EPSS 0.76%
- Veröffentlicht 14.06.2007 19:30:00
- Zuletzt bearbeitet 16.06.2026 22:41:04
usr/mgmt_ipc.c in iscsid in open-iscsi (iscsi-initiator-utils) before 2.0-865 checks the client's UID on the listening AF_LOCAL socket instead of the new connection, which allows remote attackers to access the management interface and cause a denial ...
CVE-2007-0771
- EPSS 0.38%
- Veröffentlicht 02.05.2007 22:19:00
- Zuletzt bearbeitet 16.06.2026 22:36:15
The utrace support in Linux kernel 2.6.18, and other versions, allows local users to cause a denial of service (system hang) related to "MT exec + utrace_attach spin failure mode," as demonstrated by ptrace-thrash.c.
CVE-2007-2030
- EPSS 0.36%
- Veröffentlicht 16.04.2007 20:19:00
- Zuletzt bearbeitet 16.06.2026 22:38:46
lharc.c in lha does not securely create temporary files, which might allow local users to read or write files by creating a file before LHA is invoked.
CVE-2007-1351
- EPSS 5.59%
- Veröffentlicht 06.04.2007 01:19:00
- Zuletzt bearbeitet 16.06.2026 22:37:24
Integer overflow in the bdfReadCharacters function in bdfread.c in (1) X.Org libXfont before 20070403 and (2) freetype 2.3.2 and earlier allows remote authenticated users to execute arbitrary code via crafted BDF fonts, which result in a heap overflo...
CVE-2007-1352
- EPSS 1.52%
- Veröffentlicht 06.04.2007 01:19:00
- Zuletzt bearbeitet 16.06.2026 22:37:24
Integer overflow in the FontFileInitTable function in X.Org libXfont before 20070403 allows remote authenticated users to execute arbitrary code via a long first line in the fonts.dir file, which results in a heap overflow.
CVE-2007-1716
- EPSS 0.3%
- Veröffentlicht 27.03.2007 22:19:00
- Zuletzt bearbeitet 16.06.2026 22:38:09
pam_console does not properly restore ownership for certain console devices when there are multiple users logged into the console and one user logs out, which might allow local users to gain privileges.
CVE-2007-0001
- EPSS 0.59%
- Veröffentlicht 02.03.2007 21:18:00
- Zuletzt bearbeitet 16.06.2026 22:34:40
The file watch implementation in the audit subsystem (auditctl -w) in the Red Hat Enterprise Linux (RHEL) 4 kernel 2.6.9 allows local users to cause a denial of service (kernel panic) by replacing a watched file, which does not cause the watch on the...
- EPSS 7.03%
- Veröffentlicht 20.02.2007 17:28:00
- Zuletzt bearbeitet 16.06.2026 22:36:45
Format string vulnerability in GnomeMeeting 1.0.2 and earlier allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via format strings in the name, which is not properly handled in a call to the gnomemeeting...