Unrated severityNVD Advisory· Published Jul 15, 2007· Updated Apr 23, 2026
CVE-2007-3103
CVE-2007-3103
Description
The init.d script for the X.Org X11 xfs font server on various Linux distributions might allow local users to change the permissions of arbitrary files via a symlink attack on the /tmp/.font-unix temporary file.
Affected products
6- cpe:2.3:o:fedoraproject:fedora_core:6.0:*:*:*:*:*:*:*
cpe:2.3:o:redhat:enterprise_linux:4.0:*:as:*:*:*:*:*+ 2 more
- cpe:2.3:o:redhat:enterprise_linux:4.0:*:as:*:*:*:*:*
- cpe:2.3:o:redhat:enterprise_linux:4.0:*:es:*:*:*:*:*
- cpe:2.3:o:redhat:enterprise_linux:4.0:*:ws:*:*:*:*:*
- cpe:2.3:o:redhat:enterprise_linux_desktop:4.0:*:*:*:*:*:*:*
Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
22- labs.idefense.com/intelligence/vulnerabilities/display.phpnvdPatch
- secunia.com/advisories/26056nvdVendor Advisory
- secunia.com/advisories/26081nvdVendor Advisory
- secunia.com/advisories/26282nvdVendor Advisory
- secunia.com/advisories/27240nvdVendor Advisory
- secunia.com/advisories/35674nvdVendor Advisory
- bugs.gentoo.org/show_bug.cginvd
- bugzilla.redhat.com/242903nvd
- osvdb.org/40945nvd
- security.gentoo.org/glsa/glsa-200710-11.xmlnvd
- www.debian.org/security/2007/dsa-1342nvd
- www.redhat.com/support/errata/RHSA-2007-0519.htmlnvd
- www.redhat.com/support/errata/RHSA-2007-0520.htmlnvd
- www.securityfocus.com/archive/1/473869/100/0/threadednvd
- www.securityfocus.com/bid/24888nvd
- www.securitytracker.com/idnvd
- exchange.xforce.ibmcloud.com/vulnerabilities/35375nvd
- issues.rpath.com/browse/RPL-1485nvd
- oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A10802nvd
- www.exploit-db.com/exploits/5167nvd
- www.redhat.com/archives/fedora-package-announce/2009-July/msg00095.htmlnvd
- www.redhat.com/archives/fedora-package-announce/2009-July/msg00096.htmlnvd
News mentions
0No linked articles in our index yet.