CVE-2007-5958: Infoleak
Published Jan 18, 2008
·Updated
X.Org Xserver before 1.4.1 allows local users to determine the existence of arbitrary files via a filename argument in the -sp option to the X program, which produces different error messages depending on whether the filename exists.
Affected Software
1 affected component
X.Org Xserver<=1.4
Remediation
Patch Available
Event History
Jan 18, 2008
CVE Published
via MITRE·10:00 PM
Data Sourced
via MITRE·10:00 PM
Description
Frequently Asked Questions
1
What is the severity of CVE-2007-5958?
The severity of CVE-2007-5958 is considered low, as it primarily enables information disclosure.
2
How do I fix CVE-2007-5958?
To fix CVE-2007-5958, upgrade the X.Org Xserver to version 1.4.1 or later.
3
Who is affected by CVE-2007-5958?
CVE-2007-5958 affects local users of X.Org Xserver versions prior to 1.4.1.
4
What type of vulnerability is CVE-2007-5958?
CVE-2007-5958 is an information disclosure vulnerability.
5
Can CVE-2007-5958 be exploited remotely?
No, CVE-2007-5958 cannot be exploited remotely, as it requires local access.