Vulnerability Name:

CVE-2007-0007 (CCN-32558)

Assigned:2006-12-19
Published:2007-02-19
Updated:2017-07-29
Summary:gnucash 2.0.4 and earlier allows local users to overwrite arbitrary files via a symlink attack on the (1) gnucash.trace, (2) qof.trace, and (3) qof.trace.[PID] temporary files.
CVSS v3 Severity:4.0 Medium (CCN CVSS v3.1 Vector: CVSS:3.1/AV:L/AC:H/PR:N/UI:N/S:U/C:N/I:L/A:L)
Exploitability Metrics:Attack Vector (AV): Local
Attack Complexity (AC): High
Privileges Required (PR): None
User Interaction (UI): None
Scope:Scope (S): Unchanged
Impact Metrics:Confidentiality (C): None
Integrity (I): Low
Availibility (A): Low
CVSS v2 Severity:3.6 Low (CVSS v2 Vector: AV:L/AC:L/Au:N/C:N/I:P/A:P)
3.1 Low (Temporal CVSS v2 Vector: AV:L/AC:L/Au:N/C:N/I:P/A:P/E:H/RL:OF/RC:C)
Exploitability Metrics:Access Vector (AV): Local
Access Complexity (AC): Low
Authentication (Au): None
Impact Metrics:Confidentiality (C): None
Integrity (I): Partial
Availibility (A): Partial
2.6 Low (CCN CVSS v2 Vector: AV:L/AC:H/Au:N/C:N/I:P/A:P)
2.3 Low (CCN Temporal CVSS v2 Vector: AV:L/AC:H/Au:N/C:N/I:P/A:P/E:H/RL:OF/RC:C)
Exploitability Metrics:Access Vector (AV): Local
Access Complexity (AC): High
Athentication (Au): None
Impact Metrics:Confidentiality (C): None
Integrity (I): Partial
Availibility (A): Partial
Vulnerability Type:CWE-Other
Vulnerability Consequences:File Manipulation
References:Source: MITRE
Type: CNA
CVE-2007-0007

Source: FEDORA
Type: UNKNOWN
FEDORA-2007-256

Source: CCN
Type: SA24225
GnuCash Insecure Temporary Files

Source: SECUNIA
Type: Patch, Vendor Advisory
24225

Source: SECUNIA
Type: UNKNOWN
24226

Source: SECUNIA
Type: UNKNOWN
24317

Source: CONFIRM
Type: UNKNOWN
http://sourceforge.net/project/shownotes.php?group_id=192&release_id=487446

Source: CCN
Type: SourceForge.net
Gnucash - File Release Notes and Changelog- Release Name: 2.0.5

Source: CCN
Type: GnuCash Web site
Open Source Accounting Software | GnuCash

Source: MANDRIVA
Type: UNKNOWN
MDKSA-2007:046

Source: CCN
Type: OSVDB ID: 33224
GnuCash Multiple trace File Symlink Arbitrary File Overwrite

Source: BID
Type: UNKNOWN
22610

Source: CCN
Type: BID-22610
GNUCash Insecure Temporary File Creation Vulnerability

Source: VUPEN
Type: UNKNOWN
ADV-2007-0653

Source: CONFIRM
Type: Vendor Advisory
https://bugzilla.redhat.com/bugzilla/show_bug.cgi?id=223233

Source: XF
Type: UNKNOWN
gnucash-symlink(32558)

Source: XF
Type: UNKNOWN
gnucash-symlink(32558)

Vulnerable Configuration:Configuration 1:
  • cpe:/a:gnucash:gnucash:*:*:*:*:*:*:*:* (Version <= 2.0.4)

  • * Denotes that component is vulnerable
    Oval Definitions
    Definition IDClassTitleLast Modified
    oval:org.opensuse.security:def:20070007
    V
    CVE-2007-0007
    2022-06-30
    oval:org.opensuse.security:def:112318
    P
    gnucash-4.6-1.3 on GA media (Moderate)
    2022-01-17
    oval:org.opensuse.security:def:26169
    P
    Security update for postgresql, postgresql13, postgresql14 (Important)
    2021-11-20
    oval:org.opensuse.security:def:105840
    P
    Security update for grilo (Important)
    2021-10-06
    oval:org.opensuse.security:def:36416
    P
    gnucash-2.2.7-1.35 on GA media (Moderate)
    2021-06-08
    oval:org.opensuse.security:def:26041
    P
    Security update for samba (Important)
    2021-04-29
    oval:org.opensuse.security:def:25977
    P
    Security update for openssl-1_1 (Important)
    2020-12-10
    oval:org.opensuse.security:def:25966
    P
    Security update for python-setuptools (Important)
    2020-12-02
    oval:org.opensuse.security:def:26741
    P
    libcap-progs on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:26307
    P
    Security update for conntrack-tools (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:26644
    P
    tar on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:27379
    P
    bytefx-data-mysql on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:26391
    P
    Security update for MozillaThunderbird (Important)
    2020-12-01
    oval:org.opensuse.security:def:25965
    P
    Security update for xorg-x11-server (Important)
    2020-12-01
    oval:org.opensuse.security:def:26683
    P
    dbus-1 on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:27414
    P
    gnucash on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:26542
    P
    evolution-data-server on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:26697
    P
    findutils on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:26250
    P
    Security update for the Linux Kernel (Important)
    2020-12-01
    oval:org.opensuse.security:def:26595
    P
    libopenssl0_9_8 on GA media (Moderate)
    2020-12-01
    BACK
    gnucash gnucash *