Security Advisory

CVE-2014-4994

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2018-01-10 18:00:00
Last updated 2024-08-06 11:34:37
Assigner mitre
State PUBLISHED

Description

lib/gyazo/client.rb in the gyazo gem 1.0.0 for Ruby allows local users to write to arbitrary files via a symlink attack on a temporary file, related to time-based filenames.