cbcvebase.
CVE-2007-3103
published 2007-07-15

CVE-2007-3103: The init.d script for the X.Org X11 xfs font server on various Linux distributions might allow local users to change the permissions of arbitrary files via a…

PriorityP421medium6.2CVSS 2.0
AVLACHAuNCCICAC
EXPLOIT
EPSS
0.90%
55.2th percentile
The init.d script for the X.Org X11 xfs font server on various Linux distributions might allow local users to change the permissions of arbitrary files via a symlink attack on the /tmp/.font-unix temporary file.

Affected

3 ranges
VendorProductVersion rangeFixed in
fedoraprojectfedora_core
redhatenterprise_linux
redhatenterprise_linux_desktop

CVSS provenance

nvdv2.06.2MEDIUMAV:L/AC:H/Au:N/C:C/I:C/A:C
vendor_redhat6.2MEDIUM
CVEs like this are exactly what “Exploited This Week” covers.

Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.