Description: D1g1t4lLeech has reported a vulnerability in GWCC, which can be exploited by malicious, local users to perform certain actions on a vulnerable system with escalated privileges. The vulnerability is caused due to the temporary file "gwcc_out.txt" being created insecurely in "/tmp" by "perform_file_save()" when printing. This can be exploited via symlink attacks to create or overwrite arbitrary files with the privileges of the user running the affected application. The vulnerability has been reported in version 0.9.8. Other versions may also be affected.
Version 0.9.8 is old: "JAN 21, 2002"
Hello, http://bugs.gentoo.org/show_bug.cgi?id=104566 Discovered by Gentoo security Scout the 2005-09-13 A true Leech Regards.
*** This bug has been marked as a duplicate of 104566 ***