CVE-2007-5958

Publication date 18 January 2008

Last updated 24 July 2024


Ubuntu priority

X.Org Xserver before 1.4.1 allows local users to determine the existence of arbitrary files via a filename argument in the -sp option to the X program, which produces different error messages depending on whether the filename exists.

Status

No maintained releases are affected by this CVE.

Package Ubuntu Release Status
xorg-server 7.10 gutsy
Fixed 2:1.3.0.0.dfsg-12ubuntu8.1
7.04 feisty
Fixed 2:1.2.0-3ubuntu8.1
6.10 edgy
Fixed 1:1.1.1-0ubuntu12.3
6.06 LTS dapper
Fixed 1:1.0.2-0ubuntu10.8

References

Related Ubuntu Security Notices (USN)

    • USN-571-1
    • X.org vulnerabilities
    • 18 January 2008

Other references