CVE-2007-6061: Medium severity Audacityteam Audacity vulnerability
Audacity 1.3.2 creates a temporary directory with a predictable name without checking for previous existence of that directory, which allows local users to cause a denial of service (recording deadlock) by creating the directory before Audacity is run. NOTE: this issue can be leveraged to delete arbitrary files or directories via a symlink attack.
Affected Software
Remediation
Patch Available
Event History
Frequently Asked Questions
What is the severity of CVE-2007-6061?
CVE-2007-6061 is considered a medium severity vulnerability due to its ability to cause a denial of service.
How do I fix CVE-2007-6061?
To fix CVE-2007-6061, ensure that Audacity is upgraded to a newer version that addresses this issue.
Who is affected by CVE-2007-6061?
CVE-2007-6061 affects users running Audacity version 1.3.2.
What kind of attack is possible with CVE-2007-6061?
CVE-2007-6061 allows local users to perform a denial of service attack by creating a directory before Audacity is executed.
Is CVE-2007-6061 still a concern today?
While CVE-2007-6061 was reported in 2007, using outdated software versions can still expose systems to this vulnerability.