Secunia Logo
Netsikker nu! 2008
 
CVE Reference: CVE-2007-3919
NOTE: The text on this page is written by CVE MITRE and reflects neither the opinions of Secunia or the results of our research. All data on this page is written and maintained by CVE MITRE.

Original Page at CVE MITRE:
CVE-2007-3919

Description:
(1) xenbaked and (2) xenmon.py in Xen 3.1 and earlier allow local users to truncate arbitrary files via a symlink attack on /tmp/xenq-shm.

CVE Status:
Candidate

References:

XF
  http://xforce.iss.net/xforce/xfdb/37403

ST
  1018859

SAID
  Secunia Advisory: SA27389
  Secunia Advisory: SA27408
  Secunia Advisory: SA27486
  Secunia Advisory: SA27497
  Secunia Advisory: SA29963

REDHAT
  http://www.redhat.com/support/errata/RHSA-2008-0194.html

MISC
  http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=447795

MANDRIVA
  http://www.mandriva.com/security/advisories?name=MDKSA-2007:203

FEDORA

DEBIAN
  http://www.debian.org/security/2007/dsa-1395

BID
  26190


Return to the previous page.