Polygen before 1.0.6 generates precompiled grammar objects with world-writable permissions, which allows local users to cause a denial of service (disk consumption) and possibly perform other unauthorized activities.
Link | Tags |
---|---|
http://www.securityfocus.com/bid/14722 | vdb entry |
http://www.debian.org/security/2005/dsa-794 | patch vendor advisory |