René Helmke 7791f18b51 bootstrap
2023-05-16 16:09:41 +02:00

96 lines
2.8 KiB
JSON

{
"id": "CVE-2007-6532",
"sourceIdentifier": "cve@mitre.org",
"published": "2008-01-09T23:46:00.000",
"lastModified": "2011-03-08T03:03:07.687",
"vulnStatus": "Modified",
"descriptions": [
{
"lang": "en",
"value": "Double free vulnerability in the Widget Library (libxfcegui4) in Xfce before 4.4.2 might allow remote attackers to execute arbitrary code via unknown vectors related to the \"cliend id, program name and working directory in session management.\""
},
{
"lang": "es",
"value": "Una vulnerabilidad de doble liberaci\u00f3n en la Biblioteca Widgets (libxfcegui4) en Xfce versiones anteriores a 4.4.2, podr\u00eda permitir a atacantes remotos ejecutar c\u00f3digo arbitrario por medio de vectores desconocidos relacionados al \"cliend id, program name and working directory in session management.\""
}
],
"metrics": {
"cvssMetricV2": [
{
"source": "nvd@nist.gov",
"type": "Primary",
"cvssData": {
"version": "2.0",
"vectorString": "AV:N/AC:L/Au:N/C:C/I:C/A:C",
"accessVector": "NETWORK",
"accessComplexity": "LOW",
"authentication": "NONE",
"confidentialityImpact": "COMPLETE",
"integrityImpact": "COMPLETE",
"availabilityImpact": "COMPLETE",
"baseScore": 10.0
},
"baseSeverity": "HIGH",
"exploitabilityScore": 10.0,
"impactScore": 10.0,
"acInsufInfo": true,
"obtainAllPrivilege": false,
"obtainUserPrivilege": false,
"obtainOtherPrivilege": false,
"userInteractionRequired": false
}
]
},
"weaknesses": [
{
"source": "nvd@nist.gov",
"type": "Primary",
"description": [
{
"lang": "en",
"value": "CWE-119"
},
{
"lang": "en",
"value": "NVD-CWE-noinfo"
}
]
}
],
"configurations": [
{
"nodes": [
{
"operator": "OR",
"negate": false,
"cpeMatch": [
{
"vulnerable": true,
"criteria": "cpe:2.3:a:xfce:xfce:*:*:*:*:*:*:*:*",
"versionEndIncluding": "4.4.1",
"matchCriteriaId": "505C43F9-E1DF-494C-B156-CFE90BE31C47"
}
]
}
]
}
],
"references": [
{
"url": "http://bugs.gentoo.org/show_bug.cgi?id=201292",
"source": "cve@mitre.org"
},
{
"url": "http://security.gentoo.org/glsa/glsa-200801-06.xml",
"source": "cve@mitre.org"
},
{
"url": "http://www.vupen.com/english/advisories/2008/0080",
"source": "cve@mitre.org"
},
{
"url": "http://www.xfce.org/documentation/changelogs/4.4.2",
"source": "cve@mitre.org"
}
]
}