Just filing to assign a CVE and close, don't mind me. Reproducible: Always
CVE-2013-2035 (http://nvd.nist.gov/nvd.cfm?cvename=CVE-2013-2035): hawtjni-runtime/src/main/java/org/fusesource/hawtjni/runtime/Library.java in HawtJNI before 1.8 allows local users to execute arbitrary Java code via a symlink attack on a temporary JAR file with a predictable name in /tmp.