lib/Locale/Po4a/Po.pm in po4a before 0.32 allows local users to overwrite arbitrary files via a symlink attack on the gettextization.failed.po temporary file.
References
Configurations
Information
Published : 2007-08-21 14:17
Updated : 2008-09-05 14:28
NVD link : CVE-2007-4462
Mitre link : CVE-2007-4462
JSON object : View
CWE
Products Affected
po4a
- po4a