|
Bacula contains a flaw that may allow a malicious local user to create or overwrite arbitrary files on the system. The issue is due to /autoconf/randpass creating temporary files in /tmp insecurely. It is possible for a user to use a symlink style attack to manipulate arbitrary files, resulting in a loss of integrity.
|