im-switch before 11.4-46.1 in Fedora Core 2 allows local users to overwrite arbitrary files via a symlink attack on the imswitcher[PID] temporary file.
Link | Tags |
---|---|
https://exchange.xforce.ibmcloud.com/vulnerabilities/16682 | vdb entry |
http://www.securityfocus.com/bid/10717 | exploit vdb entry patch |
http://packetstormsecurity.org/0407-advisories/fedora_im-switch_tempfile_race.txt | exploit vendor advisory |
http://secunia.com/advisories/12037 | third party advisory patch vendor advisory |
http://bugzilla.redhat.com/bugzilla/show_bug.cgi?id=126940 | |
http://www.osvdb.org/7772 | vdb entry exploit |