Unrated severityNVD Advisory· Published Nov 20, 2007· Updated Apr 23, 2026
CVE-2007-6061
CVE-2007-6061
Description
Audacity 1.3.2 creates a temporary directory with a predictable name without checking for previous existence of that directory, which allows local users to cause a denial of service (recording deadlock) by creating the directory before Audacity is run. NOTE: this issue can be leveraged to delete arbitrary files or directories via a symlink attack.
Affected products
1- cpe:2.3:a:audacityteam:audacity:1.3.2:*:*:*:*:*:*:*
Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
10- bugs.gentoo.org/show_bug.cginvdExploitIssue TrackingPatchThird Party Advisory
- security.gentoo.org/glsa/glsa-200803-03.xmlnvdThird Party Advisory
- www.securityfocus.com/bid/26608nvdBroken LinkThird Party AdvisoryVDB Entry
- www.redhat.com/archives/fedora-package-announce/2008-May/msg00075.htmlnvdThird Party Advisory
- www.redhat.com/archives/fedora-package-announce/2008-May/msg00087.htmlnvdThird Party Advisory
- secunia.com/advisories/27841nvdBroken Link
- secunia.com/advisories/29206nvdBroken Link
- secunia.com/advisories/30191nvdBroken Link
- www.mandriva.com/security/advisoriesnvdBroken Link
- www.vupen.com/english/advisories/2007/4025nvdBroken Link
News mentions
0No linked articles in our index yet.