ioquake3 before r2253 allows local users to overwrite arbitrary files via a symlink attack on the /tmp/ioq3.pid temporary file.
2012-06-15T14:55:02.060
2025-04-11T00:51:21.963
Deferred
CVSSv2: 5.6 (MEDIUM)
AV:L/AC:H/Au:N/C:N/I:C/A:C
1.9
9.2
Type | Vendor | Product | Version/Range | Vulnerable? |
---|---|---|---|---|
Application | ioquake3 | ioquake3_engine | ≤ r2252 | Yes |