From the Secunia advisory at URL: A security issue has been reported in OpenVAS Scanner, which can be exploited by malicious, local users to perform certain actions with escalated privileges. The security issue is caused due to the application passing a predictable temporary filename to the "-r" parameter of the ovaldi application, which can be exploited to overwrite arbitrary files via symlink attacks. The security issue is reported in version 3.2.4. Other versions may also be affected.
Should be fixed with updated openvas-versions now in tree. According to this this has almost no severity: http://www.openwall.com/lists/oss-security/2011/09/09/10 So going ahead with no GLSA?
security, can we close this one? openvas is ~-only, so no glsa needed anyway.
If all affected versions are gone, then yes, noglsa.