CVE Database · CVE-2007-3103
CVSS v3.1
N/A
EPSS
0.90%
Published
Jul 15, 2007
Modified
Jun 16, 2026
Public PoC / Exploit (2)
All weaponized →Links to public security research (Exploit-DB, Nuclei, Trickest, GitHub) for defensive use only.
Description
The init.d script for the X.Org X11 xfs font server on various Linux distributions might allow local users to change the permissions of arbitrary files via a symlink attack on the /tmp/.font-unix temporary file.
Weaknesses (CWE)
Affected Products (6)
References (20)