Vulnerabilities > Ihji

DATE CVE VULNERABILITY TITLE RISK
2011-05-23 CVE-2011-1920 Link Following vulnerability in multiple products
The make include files in NetBSD before 1.6.2, as used in pmake 1.111 and other products, allow local users to overwrite arbitrary files via a symlink attack on a /tmp/_depend##### temporary file, related to (1) bsd.lib.mk and (2) bsd.prog.mk.
3.3