CVE-2007-1738
TrueCrypt 4.3, when installed setuid root, allows local users to cause a denial of service (filesystem unavailability) or gain privileges by mounting a crafted TrueCrypt volume, as demonstrated using (1) /usr/bin or (2) another user's home directory, a different issue than CVE-2007-1589.
- Affected products
- Truecrypt
- Truecrypt Foundation Truecrypt
- = 3.0, 4.0, 4.1, 4.2, 4.3
- Fix
- Available
- CVSS 2.0
- 6.9 MEDIUM
- EPSS
- 0.6% (48th percentile)
- NVD status
- Modified
- Published
- 2007-03-28
CVE-2007-1738 at NVD
6 known exploits for CVE-2007-1738
Proof-of-concept code and exploit modules indexed by Sploitus