CVE-2007-0823
Last modified
CVE-2007-0823 is a vulnerability of currently unknown severity. xterm on Slackware Linux 10.2 stores information that had been displayed for a different user account using the same xterm process, which might allow local users to bypass file permissions and read other users' files, or obtain other sensitive information, by reading the xterm process memory. NOTE: it could be argued that this is an expected consequence of multiple users sharing the same interactive process, in which case this is not a vulnerability.. EPSS estimates a 0.44% chance of exploitation in the next 30 days.
Description
xterm on Slackware Linux 10.2 stores information that had been displayed for a different user account using the same xterm process, which might allow local users to bypass file permissions and read other users' files, or obtain other sensitive information, by reading the xterm process memory. NOTE: it could be argued that this is an expected consequence of multiple users sharing the same interactive process, in which case this is not a vulnerability.
Metrics
Affected Software
| Vendor | Product | Versions |
|---|---|---|
| Slackware | Slackware Linux | 10.2 |
References
Timeline
- Published
- Last Modified
- Status
- Modified
Frequently Asked Questions
What is CVE-2007-0823?
How severe is CVE-2007-0823?
How do I fix CVE-2007-0823?
How Strix Helps
- How Strix found a critical auth bypass in etcdStrix autonomously discovered a critical authentication bypass in etcd, later designated CVE-2026-33413.
- Autonomous PentestingAI agents that find and validate exploitable vulnerabilities like this one across your applications.
- PR ReviewsPentest every pull request so vulnerable code is caught before it ships to production.
- AI Penetration TestingHow AI-driven penetration testing continuously covers your attack surface.
Related CVEs from 2007
- CVE-2007-0817Cross-site scripting (XSS) vulnerability in Adobe ColdFusion…
- CVE-2007-0818Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultI…
- CVE-2007-0819HP Network Node Manager (NNM) Remote Console 7.50, 7.51, and…
- CVE-2007-0820Multiple PHP remote file inclusion vulnerabilities in Cedric…
- CVE-2007-0821Multiple directory traversal vulnerabilities in Cedric CLAIR…
- CVE-2007-0822umount, when running with the Linux 2.6.15 kernel on Slackwa…
- CVE-2007-0824PHP remote file inclusion vulnerability in inhalt.php in Lig…
- CVE-2007-0825FlashFXP 3.4.0 build 1145 allows remote servers to cause a d…
- CVE-2007-0826SQL injection vulnerability in forum.asp in Kisisel Site 200…
- CVE-2007-0827The Alibaba Alipay PTA Module ActiveX control (PTA.DLL) allo…
- CVE-2007-0828PHP remote file inclusion vulnerability in affichearticles.p…
- CVE-2007-0829avast! Server Edition before 4.7.726 does not demand a passw…
Are you affected by CVE-2007-0823?
Run a free Strix scan to check your systems for this vulnerability.
Scan your code nowSource: NVD / NIST
