Candidate: CVE-2011-0007 PublicDate: 2011-01-11 03:00:00 UTC References: https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2011-0007 Description: pimd 2.1.5 and possibly earlier versions allows user-assisted local users to overwrite arbitrary files via a symlink attack on (1) pimd.dump when a USR1 signal is sent, or (2) pimd.cache when USR2 is sent. Ubuntu-Description: Notes: Bugs: Priority: medium Discovered-by: Assigned-to: CVSS: Patches_pimd: upstream_pimd: released (2.1.6-1) dapper_pimd: ignored (reached end-of-life) hardy_pimd: ignored (reached end-of-life) karmic_pimd: ignored (reached end-of-life) lucid_pimd: ignored (reached end-of-life) maverick_pimd: ignored (reached end-of-life) natty_pimd: not-affected (2.1.6-1) oneiric_pimd: not-affected (2.1.6-1) precise_pimd: not-affected (2.1.6-1) quantal_pimd: not-affected (2.1.6-1) raring_pimd: not-affected (2.1.6-1) saucy_pimd: not-affected (2.1.6-1) devel_pimd: not-affected (2.1.6-1)