CVE-2008-5151 (http://nvd.nist.gov/nvd.cfm?cvename=CVE-2008-5151): test_parser.py in mayavi 1.5 allows local users to overwrite arbitrary files via a symlink attack on the /tmp/err.log temporary file.
*PING*
Hi, I think this advisory doesn't apply. The /tmp/err.log attack is on a comment in test_parser.py, and looking at the code, the only reference to a possible temp file was commented out (line 161). So I would close this as invalid but I need security experts to confirm. Thanks
We should close this one, as it is a non issue. @security: ok with that?
Confirmed, closing.