CVE-2007-3921: Low severity GForge vulnerability
Published Nov 8, 2007
·Updated
gforge 3.1 and 4.5.14 allows local users to truncate arbitrary files via a symlink attack on temporary files.
Affected Software
2 affected components
GForge=3.1
GForge=4.5.14
Event History
Nov 8, 2007
CVE Published
11:46 AM
CVE Published
via MITRE·04:00 PM
Data Sourced
via MITRE·04:00 PM
Description
Frequently Asked Questions
1
What is the severity of CVE-2007-3921?
CVE-2007-3921 has a medium severity rating due to its potential for local users to exploit symlink vulnerabilities.
2
How do I fix CVE-2007-3921?
To fix CVE-2007-3921, ensure that you apply the latest patches for GForge 3.1 and 4.5.14.
3
Which versions of GForge are affected by CVE-2007-3921?
CVE-2007-3921 affects GForge versions 3.1 and 4.5.14.
4
What type of attack is associated with CVE-2007-3921?
CVE-2007-3921 is associated with a symlink attack that allows local users to truncate arbitrary files.
5
Can CVE-2007-3921 be exploited remotely?
CVE-2007-3921 cannot be exploited remotely as it requires local user access to execute the attack.