// For flags

CVE-2007-2654

 

Severity Score

4.4
*CVSS v2

Exploit Likelihood

*EPSS

Affected Versions

*CPE

Public Exploits

1
*Multiple Sources

Exploited in Wild

-
*KEV

Decision

-
*SSVC
Descriptions

xfs_fsr in xfsdump creates a .fsr temporary directory with insecure permissions, which allows local users to read or overwrite arbitrary files on xfs filesystems.

xfs_fsr en xfsdump crea un directorio temporal .fsr con permisos no seguros, que permite a usuarios locales leer o sobrescribir archivos arbitrarios en sistemas de archivos xfs.

*Credits: N/A
CVSS Scores
Attack Vector
Local
Attack Complexity
Medium
Authentication
None
Confidentiality
Partial
Integrity
Partial
Availability
Partial
* Common Vulnerability Scoring System
SSVC
  • Decision:-
Exploitation
-
Automatable
-
Tech. Impact
-
* Organization's Worst-case Scenario
Timeline
  • 2007-05-14 CVE Reserved
  • 2007-05-14 CVE Published
  • 2023-03-08 EPSS Updated
  • 2024-08-07 CVE Updated
  • 2024-08-07 First Exploit
  • ---------- Exploited in Wild
  • ---------- KEV Due Date
CWE
  • CWE-362: Concurrent Execution using Shared Resource with Improper Synchronization ('Race Condition')
CAPEC
Affected Vendors, Products, and Versions
Vendor Product Version Other Status
Vendor Product Version Other Status <-- --> Vendor Product Version Other Status
Suse
Search vendor "Suse"
Suse Linux
Search vendor "Suse" for product "Suse Linux"
1.0
Search vendor "Suse" for product "Suse Linux" and version "1.0"
desktop
Affected
Suse
Search vendor "Suse"
Suse Linux
Search vendor "Suse" for product "Suse Linux"
8
Search vendor "Suse" for product "Suse Linux" and version "8"
enterprise_server
Affected
Suse
Search vendor "Suse"
Suse Linux
Search vendor "Suse" for product "Suse Linux"
8.0
Search vendor "Suse" for product "Suse Linux" and version "8.0"
retail_solution
Safe
Suse
Search vendor "Suse"
Suse Linux
Search vendor "Suse" for product "Suse Linux"
9.0
Search vendor "Suse" for product "Suse Linux" and version "9.0"
-
Safe
Suse
Search vendor "Suse"
Suse Linux
Search vendor "Suse" for product "Suse Linux"
9.0
Search vendor "Suse" for product "Suse Linux" and version "9.0"
enterprise_server
Affected
Suse
Search vendor "Suse"
Suse Linux
Search vendor "Suse" for product "Suse Linux"
9.0
Search vendor "Suse" for product "Suse Linux" and version "9.0"
personal
Safe
Suse
Search vendor "Suse"
Suse Linux
Search vendor "Suse" for product "Suse Linux"
9.0
Search vendor "Suse" for product "Suse Linux" and version "9.0"
professional
Safe
Suse
Search vendor "Suse"
Suse Linux
Search vendor "Suse" for product "Suse Linux"
9.0
Search vendor "Suse" for product "Suse Linux" and version "9.0"
x86_64
Safe
Suse
Search vendor "Suse"
Suse Linux
Search vendor "Suse" for product "Suse Linux"
9.1
Search vendor "Suse" for product "Suse Linux" and version "9.1"
personal
Safe
Suse
Search vendor "Suse"
Suse Linux
Search vendor "Suse" for product "Suse Linux"
9.1
Search vendor "Suse" for product "Suse Linux" and version "9.1"
professional
Safe
Suse
Search vendor "Suse"
Suse Linux
Search vendor "Suse" for product "Suse Linux"
9.1
Search vendor "Suse" for product "Suse Linux" and version "9.1"
x86_64
Safe
Suse
Search vendor "Suse"
Suse Linux
Search vendor "Suse" for product "Suse Linux"
9.2
Search vendor "Suse" for product "Suse Linux" and version "9.2"
personal
Safe
Suse
Search vendor "Suse"
Suse Linux
Search vendor "Suse" for product "Suse Linux"
9.2
Search vendor "Suse" for product "Suse Linux" and version "9.2"
professional
Safe
Suse
Search vendor "Suse"
Suse Linux
Search vendor "Suse" for product "Suse Linux"
9.2
Search vendor "Suse" for product "Suse Linux" and version "9.2"
x86_64
Safe
Suse
Search vendor "Suse"
Suse Linux
Search vendor "Suse" for product "Suse Linux"
9.3
Search vendor "Suse" for product "Suse Linux" and version "9.3"
personal
Safe
Suse
Search vendor "Suse"
Suse Linux
Search vendor "Suse" for product "Suse Linux"
9.3
Search vendor "Suse" for product "Suse Linux" and version "9.3"
professional
Safe
Suse
Search vendor "Suse"
Suse Linux
Search vendor "Suse" for product "Suse Linux"
9.3
Search vendor "Suse" for product "Suse Linux" and version "9.3"
x86_64
Safe
Suse
Search vendor "Suse"
Suse Linux
Search vendor "Suse" for product "Suse Linux"
10
Search vendor "Suse" for product "Suse Linux" and version "10"
enterprise_desktop
Safe
Suse
Search vendor "Suse"
Suse Linux
Search vendor "Suse" for product "Suse Linux"
10
Search vendor "Suse" for product "Suse Linux" and version "10"
enterprise_server
Safe
Suse
Search vendor "Suse"
Suse Linux
Search vendor "Suse" for product "Suse Linux"
10.0
Search vendor "Suse" for product "Suse Linux" and version "10.0"
oss
Safe
Suse
Search vendor "Suse"
Suse Linux
Search vendor "Suse" for product "Suse Linux"
10.1
Search vendor "Suse" for product "Suse Linux" and version "10.1"
personal
Safe
Suse
Search vendor "Suse"
Suse Linux
Search vendor "Suse" for product "Suse Linux"
10.1
Search vendor "Suse" for product "Suse Linux" and version "10.1"
professional
Safe
Suse
Search vendor "Suse"
Suse Linux
Search vendor "Suse" for product "Suse Linux"
10.2
Search vendor "Suse" for product "Suse Linux" and version "10.2"
professional
Safe
Suse
Search vendor "Suse"
Suse Linux
Search vendor "Suse" for product "Suse Linux"
10.2
Search vendor "Suse" for product "Suse Linux" and version "10.2"
x86_64
Safe
Suse
Search vendor "Suse"
Suse United Linux
Search vendor "Suse" for product "Suse United Linux"
1.0
Search vendor "Suse" for product "Suse United Linux" and version "1.0"
-
Safe
Suse
Search vendor "Suse"
Suse Linux Openexchange Server
Search vendor "Suse" for product "Suse Linux Openexchange Server"
4.0
Search vendor "Suse" for product "Suse Linux Openexchange Server" and version "4.0"
-
Affected
Suse
Search vendor "Suse"
Suse Linux School Server
Search vendor "Suse" for product "Suse Linux School Server"
gold
Search vendor "Suse" for product "Suse Linux School Server" and version "gold"
i386
Affected
Suse
Search vendor "Suse"
Suse Linux Standard Server
Search vendor "Suse" for product "Suse Linux Standard Server"
8.0
Search vendor "Suse" for product "Suse Linux Standard Server" and version "8.0"
-
Affected
Suse
Search vendor "Suse"
Suse Open Enterprise Server
Search vendor "Suse" for product "Suse Open Enterprise Server"
9
Search vendor "Suse" for product "Suse Open Enterprise Server" and version "9"
-
Affected
Xfsdump
Search vendor "Xfsdump"
Xfsdump
Search vendor "Xfsdump" for product "Xfsdump"
2.2.38
Search vendor "Xfsdump" for product "Xfsdump" and version "2.2.38"
-
Affected
Suse
Search vendor "Suse"
Opensuse
Search vendor "Suse" for product "Opensuse"
10.2
Search vendor "Suse" for product "Opensuse" and version "10.2"
-
Affected