Heap
16-05-08, 20:50
uulib/uunconc.c in UUDeview 0.5.20 allows local users to overwrite arbitrary files via a symlink attack on a temporary filename generated by the tempnam function. NOTE: this may be a CVE-2004-2265 regression.
More... (http://nvd.nist.gov/nvd.cfm?cvename=CVE-2008-2266)
More... (http://nvd.nist.gov/nvd.cfm?cvename=CVE-2008-2266)