CVE-2007-2654

Publication date 14 May 2007

Last updated 24 July 2024


Ubuntu priority

xfs_fsr in xfsdump creates a .fsr temporary directory with insecure permissions, which allows local users to read or overwrite arbitrary files on xfs filesystems.

Status

Package Ubuntu Release Status
xfsdump 7.04 feisty
Fixed 2.2.38-1ubuntu0.7.04.1
6.10 edgy
Fixed 2.2.38-1ubuntu0.6.10.1
6.06 LTS dapper
Fixed 2.2.30-1ubuntu0.1

References

Related Ubuntu Security Notices (USN)

    • USN-516-1
    • xfsdump vulnerability
    • 20 September 2007

Other references