CVE detail
CVE-2007-5159 — CVE-2007-5159
Published 2007-10-01 · Modified 2026-06-16 · Vendor redhat · Product fedora · Source nvd
UNKNOWN
severity
CVSS-derived band
0.0035
EPSS probability
exploitation probability, 30d
28.0%
EPSS percentile
percentile vs all CVEs
NOT LISTED
CISA KEV
known exploited catalog
Description
The ntfs-3g package before 1.913-2.fc7 in Fedora 7, and an ntfs-3g package in Ubuntu 7.10/Gutsy, assign incorrect permissions (setuid root) to mount.ntfs-3g, which allows local users with fuse group membership to read from and write to arbitrary block devices, possibly involving a file descriptor leak.
Remediation
No vendor-published fix data in our corpus for this CVE. Check the references below or the vendor's PSIRT / security advisories page.
References