|
pnmindex, one of the netpbm utilities, contains a flaw that may allow a malicious user to overwrite arbitrary files. Due to predictable temporary file names, an attacker can create symlinks in advance to exploit this flaw. It is possible that the flaw may allow for the overwriting and/or corruption of arbitrary files by the user invoking the vulnerable applications resulting in a loss of integrity.
|