Candidate: CVE-2008-4970 PublicDate: 2008-11-06 15:55:00 UTC References: https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2008-4970 Description: runiozone in lustre 1.6.5 allows local users to overwrite arbitrary files via a symlink attack on the /tmp/iozone.log temporary file. Ubuntu-Description: Notes: Bugs: Priority: low Discovered-by: Assigned-to: CVSS: Patches_lustre: upstream_lustre: released (1.6.5.1-1) dapper_lustre: DNE gutsy_lustre: needed (reached end-of-life) hardy_lustre: ignored (reached end-of-life) intrepid_lustre: needed (reached end-of-life) jaunty_lustre: not-affected (1.6.5.1-1) karmic_lustre: not-affected (1.6.5.1-1) lucid_lustre: not-affected (1.6.5.1-1) maverick_lustre: not-affected (1.6.5.1-1) natty_lustre: not-affected (1.6.5.1-1) oneiric_lustre: not-affected (1.6.5.1-1) devel_lustre: not-affected (1.6.5.1-1)