6.9
CVSSv2

CVE-2007-1738

Published: 28/03/2007 Updated: 16/10/2018
CVSS v2 Base Score: 6.9 | Impact Score: 10 | Exploitability Score: 3.4
VMScore: 695
Vector: AV:L/AC:M/Au:N/C:C/I:C/A:C

Vulnerability Summary

TrueCrypt 4.3, when installed setuid root, allows local users to cause a denial of service (filesystem unavailability) or gain privileges by mounting a crafted TrueCrypt volume, as demonstrated using (1) /usr/bin or (2) another user's home directory, a different issue than CVE-2007-1589.

Vulnerable Product Search on Vulmon Subscribe to Product

truecrypt foundation truecrypt 3.0

truecrypt foundation truecrypt 4.0

truecrypt foundation truecrypt 4.1

truecrypt foundation truecrypt 4.2

truecrypt foundation truecrypt 4.3

Exploits

# $Id: raptor_truecrypt,v 1111 2007/04/04 11:31:56 raptor Exp $ # # raptor_truecrypt - setuid truecrypt privilege escalation # Copyright (c) 2007 Marco Ivaldi <raptor@0xdeadbeefinfo> # # TrueCrypt 43, when installed setuid root, allows local users to cause a # denial of service (filesystem unavailability) or gain privileges by mounting ...