Red Hat Bugzilla – Bug 139360
CAN-2004-0970 temporary files issues in gzip.
Last modified: 2007-11-30 17:07:05 EST
Trustix has discovered temporary file bugs in gzexe, zdiff and znew
which could allow a local user to overwrite arbitrary files by
creating specially named symlinks.
This issue also affects RHEL2.1
We should also make sure we fix this in RHEL4 before it is released.