lib/Locale/Po4a/Po.pm in po4a before 0.32 allows local users to overwrite arbitrary files via a symlink attack on the gettextization.failed.po temporary file.
References
Configurations
History
No history.
Information
Published : 2007-08-21 21:17
Updated : 2008-09-05 21:28
NVD link : CVE-2007-4462
Mitre link : CVE-2007-4462
CVE.ORG link : CVE-2007-4462
JSON object : View
Products Affected
po4a
- po4a
CWE