CVE-2007-3103 describes a local privilege escalation vulnerability in the X.Org X11 xfs font server's init.d script, affecting various Linux distributions including Fedora and Red Hat Enterprise Linux. An attacker could exploit a symlink race condition on the /tmp/.font-unix temporary file to arbitrarily change file permissions. This vulnerability has a CVSS score of 6.2, indicating high impact on confidentiality, integrity, and availability, but requires high attack complexity and local access. While no active exploitation or Metasploit modules are reported, an ExploitDB entry exists, and there is minimal community discussion or media coverage.
| Vendor | Product | Version(s) | CPE |
|---|---|---|---|
6.0CPE matchmatch criteria | cpe:2.3:o:fedoraproject:fedora_core:6.0:*:*:*:*:*:*:* | ||
4.0CPE matchmatch criteria | cpe:2.3:o:redhat:enterprise_linux:4.0:*:as:*:*:*:*:* | ||
4.0CPE matchmatch criteria | cpe:2.3:o:redhat:enterprise_linux:4.0:*:es:*:*:*:*:* | ||
4.0CPE matchmatch criteria | cpe:2.3:o:redhat:enterprise_linux:4.0:*:ws:*:*:*:*:* | ||
4.0CPE matchmatch criteria | cpe:2.3:o:redhat:enterprise_linux_desktop:4.0:*:*:*:*:*:*:* |
CVSS version used by this source: 2.0
AV:L/AC:H/Au:N/C:C/I:C/A:C
No social media mentions found for this CVE.
The average CVE in this peer group has 0.0 Twitter, 0.0 Reddit, 0.0 Bluesky, 0.0 Mastodon, and 0.1 GitHub mentions.
No media coverage found for this CVE.
The average CVE in this peer group has 0.0 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.