Antivir / Linux 2.0.9-9, and possibly earlier versions, allows local users to overwrite arbitrary files via a symlink attack on the .pid_antivir_$$ temporary file.
Link | Tags |
---|---|
http://www.securitytracker.com/id?1008702 | vdb entry |
https://exchange.xforce.ibmcloud.com/vulnerabilities/14214 | vdb entry |
http://secunia.com/advisories/10620 | third party advisory |
http://www.osvdb.org/3496 | vdb entry |
http://marc.info/?l=bugtraq&m=107402026023763&w=2 | mailing list |