The rs_filter_graph function in librawstudio/rs-filter.c in rawstudio might allow local users to truncate arbitrary files via a symlink attack on (1) /tmp/rs-filter-graph.png or (2) /tmp/rs-filter-graph.
Published at: December 29, 2017 at 10:29PM
View on website
New vulnerability on the NVD: CVE-2014-4978
Tag: government hack NVD security
No comments: