The (1) eqn2graph and (2) pic2graph scripts in groff 1.18.1 allow local users to overwrite arbitrary files via a symlink attack on temporary files.
Affected Software
Name |
Vendor |
Start Version |
End Version |
Groff |
Gnu |
1.18.1 (including) |
1.18.1 (including) |
References