PublicDate: 2007-05-14 21:19:00 UTC Candidate: CVE-2007-2654 References: https://ubuntu.com/security/notices/USN-516-1 https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2007-2654 Description: xfs_fsr in xfsdump creates a .fsr temporary directory with insecure permissions, which allows local users to read or overwrite arbitrary files on xfs filesystems. Ubuntu-Description: Notes: Priority: untriaged Discovered-by: Assigned-to: CVSS: Bugs: upstream_xfsdump: released (2.2.45) dapper_xfsdump: released (2.2.30-1ubuntu0.1) edgy_xfsdump: released (2.2.38-1ubuntu0.6.10.1) feisty_xfsdump: released (2.2.38-1ubuntu0.7.04.1) devel_xfsdump: released (2.2.45-1)