CVE-2007-6209: Medium severity Linux Linux kernel vulnerability
Published Dec 4, 2007
·Updated
Util/difflog.pl in zsh 4.3.4 allows local users to overwrite arbitrary files via a symlink attack on temporary files.
Affected Software
2 affected components
Linux Linux kernel
Zsh zsh=4.3.4
Event History
Dec 4, 2007
CVE Published
via MITRE·12:00 AM
Data Sourced
via MITRE·12:00 AM
Description
Data Sourced
12:46 AM
DescriptionWeaknessAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2007-6209?
CVE-2007-6209 is considered a medium severity vulnerability due to the potential for local users to exploit the symlink attack.
2
How do I fix CVE-2007-6209?
To fix CVE-2007-6209, upgrade zsh to a version newer than 4.3.4 which addresses this vulnerability.
3
What types of systems are affected by CVE-2007-6209?
CVE-2007-6209 specifically affects systems running zsh version 4.3.4.
4
Can CVE-2007-6209 be exploited remotely?
No, CVE-2007-6209 requires local access to the system to exploit.
5
What attack vector is used in CVE-2007-6209?
CVE-2007-6209 utilizes a symlink attack to overwrite arbitrary files.