catman in Solaris 2.7 and 2.8 allows local users to overwrite arbitrary files via a symlink attack on the sman_PID temporary file.
Link | Tags |
---|---|
http://www.osvdb.org/6024 | vdb entry |
http://archives.neohapsis.com/archives/bugtraq/2000-12/0313.html | mailing list vendor advisory |
https://exchange.xforce.ibmcloud.com/vulnerabilities/5788 | vdb entry |