CVE-2007-2837
Published Jul 3, 2007
Last updated 7 years ago
Overview
- Description
- The (1) getRule and (2) getChains functions in server/rules.cpp in fireflierd (fireflier-server) in FireFlier 1.1.6 allow local users to overwrite arbitrary files via a symlink attack on the /tmp/fireflier.rules temporary file.
- Source
- cve@mitre.org
- NVD status
- Modified
Social media
- Hype score
- Not currently trending
Risk scores
CVSS 2.0
- Type
- Primary
- Base score
- 3.6
- Impact score
- 4.9
- Exploitability score
- 3.9
- Vector string
- AV:L/AC:L/Au:N/C:N/I:P/A:P
Weaknesses
- nvd@nist.gov
- NVD-CWE-Other
Configurations
[ { "nodes": [ { "negate": false, "cpeMatch": [ { "criteria": "cpe:2.3:o:debian:debian_linux:3.1:*:*:*:*:*:*:*", "vulnerable": false, "matchCriteriaId": "A2E0C1F8-31F5-4F61-9DF7-E49B43D3C873" }, { "criteria": "cpe:2.3:o:debian:debian_linux:4.0:*:*:*:*:*:*:*", "vulnerable": false, "matchCriteriaId": "0F92AB32-E7DE-43F4-B877-1F41FA162EC7" }, { "criteria": "cpe:2.3:o:debian:debian_linux:4.0:*:alpha:*:*:*:*:*", "vulnerable": false, "matchCriteriaId": "F5114DA3-FBB9-47C4-857B-3212404DAD4E" }, { "criteria": "cpe:2.3:o:debian:debian_linux:4.0:*:amd64:*:*:*:*:*", "vulnerable": false, "matchCriteriaId": "4D5F5A52-285E-4E7E-83B8-508079DBCEAE" }, { "criteria": "cpe:2.3:o:debian:debian_linux:4.0:*:arm:*:*:*:*:*", "vulnerable": false, "matchCriteriaId": "674BE2D9-009B-46C5-A071-CB10368B8D48" }, { "criteria": "cpe:2.3:o:debian:debian_linux:4.0:*:ia-32:*:*:*:*:*", "vulnerable": false, "matchCriteriaId": "ABB5AC0D-2358-4C8E-99B5-2CE0A678F549" }, { "criteria": "cpe:2.3:o:debian:debian_linux:4.0:*:ia-64:*:*:*:*:*", "vulnerable": false, "matchCriteriaId": "38B37184-BA88-44F1-AC9E-8B60C2419111" }, { "criteria": "cpe:2.3:o:debian:debian_linux:4.0:*:mips:*:*:*:*:*", "vulnerable": false, "matchCriteriaId": "0EEA2CDD-7FCD-461E-90FC-CDB3C3992A32" }, { "criteria": "cpe:2.3:o:debian:debian_linux:4.0:*:powerpc:*:*:*:*:*", "vulnerable": false, "matchCriteriaId": "A3938420-087D-4D92-A2F8-EAE54D9837EC" }, { "criteria": "cpe:2.3:o:debian:debian_linux:4.0:*:s390:*:*:*:*:*", "vulnerable": false, "matchCriteriaId": "4567FE5A-5061-4741-AA6D-4AB365579F8D" }, { "criteria": "cpe:2.3:o:debian:debian_linux:4.0:*:sparc:*:*:*:*:*", "vulnerable": false, "matchCriteriaId": "10F42CF8-FB98-4AFC-96C5-FD7D442B0FA3" } ], "operator": "OR" }, { "negate": false, "cpeMatch": [ { "criteria": "cpe:2.3:a:fireflier:fireflier:1.1.6:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "39C2A6AC-7989-4AA3-84C7-539BA2E758B3" } ], "operator": "OR" } ], "operator": "AND" } ]