catman in Solaris 2.7 and 2.8 allows local users to overwrite arbitrary files via a symlink attack on the sman_PID temporary file.
Affected Software
Name |
Vendor |
Start Version |
End Version |
Sunos |
Sun |
5.7 (including) |
5.7 (including) |
Sunos |
Sun |
5.8 (including) |
5.8 (including) |
References