CVE-2007-6328: High severity DOSBox DOSBox vulnerability
Published Dec 13, 2007
·Updated
DISPUTED DOSBox 0.72 and earlier allows local users to obtain access to the filesystem on the host operating system via the mount command. NOTE: the researcher reports a vendor response stating that this is not a security problem.
Affected Software
1 affected component
DOSBox DOSBox<=0.72
Event History
Dec 13, 2007
CVE Published
07:46 PM
Disputed
07:46 PM
Dec 14, 2007
CVE Published
via MITRE·12:00 AM
Data Sourced
via MITRE·12:00 AM
Description
Frequently Asked Questions
1
What is the severity of CVE-2007-6328?
CVE-2007-6328 is considered a disputed vulnerability, as the vendor claims it is not a security issue.
2
How do I fix CVE-2007-6328?
To mitigate CVE-2007-6328, it is recommended to upgrade to a version of DOSBox newer than 0.72.
3
Who is affected by CVE-2007-6328?
All local users of DOSBox version 0.72 and earlier are potentially affected by CVE-2007-6328.
4
What type of attack is associated with CVE-2007-6328?
CVE-2007-6328 allows local users to execute a denial of service attack by exploiting the mount command.
5
Is CVE-2007-6328 actively being exploited?
There is no specific indication of active exploitation for CVE-2007-6328 in the wild.