flim before 1.14.3 creates temporary files insecurely, which allows local users to overwrite arbitrary files of the Emacs user via a symlink attack.
Link | Tags |
---|---|
http://www.redhat.com/support/errata/RHSA-2004-344.html | vendor advisory |
http://www.debian.org/security/2004/dsa-500 | patch vendor advisory |
https://exchange.xforce.ibmcloud.com/vulnerabilities/16027 | vdb entry |