The (1) tcltags or (2) vimspell.sh scripts in vim 6.3 allow local users to overwrite or create arbitrary files via a symlink attack on temporary files.
Name | Vendor | Start Version | End Version |
---|---|---|---|
Vim | Vim_development_group | 6.3.011 (including) | 6.3.011 (including) |
Vim | Vim_development_group | 6.3.025 (including) | 6.3.025 (including) |
Vim | Vim_development_group | 6.3.030 (including) | 6.3.030 (including) |
Vim | Vim_development_group | 6.3.044 (including) | 6.3.044 (including) |
Red Hat Enterprise Linux 3 | RedHat | vim-1:6.3.046-0.30E.3 | * |
Red Hat Enterprise Linux 4 | RedHat | vim-1:6.3.046-0.40E.4 | * |
Vim | Ubuntu | dapper | * |
Vim | Ubuntu | devel | * |
Vim | Ubuntu | edgy | * |
Vim | Ubuntu | feisty | * |