CVE-2007-6532: Buffer Overflow
Published Jan 9, 2008
·Updated
Double free vulnerability in the Widget Library (libxfcegui4) in Xfce before 4.4.2 might allow remote attackers to execute arbitrary code via unknown vectors related to the "cliend id, program name and working directory in session management."
Affected Software
1 affected component
Xfce xfce<=4.4.1
Event History
Jan 9, 2008
CVE Published
11:46 PM
Jan 10, 2008
CVE Published
via MITRE·04:00 AM
Data Sourced
via MITRE·04:00 AM
Description
Frequently Asked Questions
1
What is the severity of CVE-2007-6532?
CVE-2007-6532 has a moderate severity level due to its potential to allow remote code execution.
2
How do I fix CVE-2007-6532?
To fix CVE-2007-6532, upgrade the Xfce library to version 4.4.2 or later.
3
What software is affected by CVE-2007-6532?
CVE-2007-6532 affects the Xfce library version prior to 4.4.2.
4
Can CVE-2007-6532 be exploited remotely?
Yes, CVE-2007-6532 can be exploited remotely, allowing attackers to execute arbitrary code.
5
What components are involved in CVE-2007-6532?
CVE-2007-6532 involves components related to session management, specifically the client ID, program name, and working directory.