CVE-2007-2654
published 2007-05-14CVE-2007-2654: xfs_fsr in xfsdump creates a .fsr temporary directory with insecure permissions, which allows local users to read or overwrite arbitrary files on xfs…
medium4.4CVSS 3.1
AVLACMAuNCPIPAP
xfs_fsr in xfsdump creates a .fsr temporary directory with insecure permissions, which allows local users to read or overwrite arbitrary files on xfs filesystems.
Affected
14 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| debian | xfsdump | < xfsdump 2.2.45-1 (bookworm) | xfsdump 2.2.45-1 (bookworm) |
| suse | opensuse | — | — |
| suse | suse_linux | — | — |
| suse | suse_linux | — | — |
| suse | suse_linux | — | — |
| suse | suse_linux_openexchange_server | — | — |
| suse | suse_linux_school_server | — | — |
| suse | suse_linux_standard_server | — | — |
| suse | suse_open_enterprise_server | — | — |
| xfsdump | xfsdump | — | — |
| xfsdump | xfsdump | >= 0 < 2.2.45-1 | 2.2.45-1 |
| xfsdump | xfsdump | >= 0 < 2.2.45-1 | 2.2.45-1 |
| xfsdump | xfsdump | >= 0 < 2.2.45-1 | 2.2.45-1 |
| xfsdump | xfsdump | >= 0 < 2.2.45-1 | 2.2.45-1 |
CVSS provenance
nvd4.4MEDIUMAV:L/AC:M/Au:N/C:P/I:P/A:P
osv4.4MEDIUM