Hi, Name: CVE-2007-6208 Status: Candidate URL: http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2007-6208 Reference: CONFIRM:http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=454089
sylprint.pl in claws mail tools (claws-mail-tools) allows local users to overwrite arbitrary files via a symlink attack on the sylprint.[USER].[PID] temporary file. Please mention the CVE id in the changelog if you fix this bug (I suggesst by removing this script from the package as upstream also wants to remove it). Kind regards Nico -- Nico Golde - http://www.ngolde.de - [EMAIL PROTECTED] - GPG: 0x73647CFF For security reasons, all text in this mail is double-rot13 encrypted.
pgpvknKLTMzP2.pgp
Description: PGP signature