bugs.gentoo.orgConfirmation
http://bugs.gentoo.org/show_bug.cgi?id=204362 CVE-2007-5958
X.Org xorg-server 1.1.1-48.13 - Probe for Files (PoC)
Record summary
CVE-2007-5958 has a selected CVSS score of 5.0; EIP currently links 1 catalogued exploit.
Description
X.Org Xserver before 1.4.1 allows local users to determine the existence of arbitrary files via a filename argument in the -sp option to the X program, which produces different error messages depending on whether the filename exists.
Description source: CVE List
Exploitation context
Available material
- Catalogued exploits
- 1
Proofs of concept
1Catalogued exploits
ExploitDBX.Org xorg-server 1.1.1-48.13 - Probe for Files (PoC)ExploitDB exploitby vl4dZNot analyzed1 file
References
Showing 12 of 62docs.info.apple.comConfirmation
http://docs.info.apple.com/article.html?artnum=307562 SSRT080083Vendor advisory
http://h20000.www2.hp.com/bizsupport/TechSupport/Document.jsp?objectID=c01543321 APPLE-SA-2008-03-18Vendor advisory
http://lists.apple.com/archives/security-announce/2008/Mar/msg00001.html [xorg] 20080117 X.Org security advisory: multiple vulnerabilities in the X servermailing list
http://lists.freedesktop.org/archives/xorg/2008-January/031918.html SUSE-SA:2008:003Vendor advisory
http://lists.opensuse.org/opensuse-security-announce/2008-01/msg00004.html SUSE-SR:2008:008Vendor advisory
http://lists.opensuse.org/opensuse-security-announce/2008-04/msg00005.html 28273Third-party advisory
http://secunia.com/advisories/28273 28532Third-party advisory
http://secunia.com/advisories/28532 28535Third-party advisory
http://secunia.com/advisories/28535 28536Third-party advisory
http://secunia.com/advisories/28536 28539Third-party advisory
http://secunia.com/advisories/28539