Mandriva Linux Security Update Advisory - Javier Fern
a472be172d6fc469059b32dbc8d04e92cd576537b8caa4a88e1e5ba9d613c3d2
Ubuntu Security Notice USN-198-1 - Javier Fernandez-Sanguino Pena discovered that several tools in the cfengine package (vicf, cfmailfilter, and cfcron) create and use temporary files in an insecure way. A local attacker could exploit this with a symlink attack to create or overwrite arbitrary files with the privileges of the user running the cfengine program.
2aa4c31f341783a73f1f184ee2e9b2e22f4f7f91814b7ffa56d84a645b4597e3
Debian Security Advisory DSA 835-1 - Javier Fern
c34847abc1ac8e80e1ae620c6476d26a11d0e417009bebcb69e3a7f24eb6d03e