The System.CodeDom.Compiler classes in Novell Mono create temporary files with insecure permissions, which allows local users to overwrite arbitrary files or execute arbitrary code via a symlink attack.
Name | Vendor | Start Version | End Version |
---|---|---|---|
Mono | Mono | 1.0 (including) | 1.0 (including) |
Mono | Mono | 2.0 (including) | 2.0 (including) |
Mono | Ubuntu | dapper | * |
Mono | Ubuntu | devel | * |
Mono | Ubuntu | edgy | * |
Mono | Ubuntu | feisty | * |