CVE-2014-4994

Publication date

2018-01-10 18:00:00

Family

mitre

State

PUBLISHED

Description

lib/gyazo/client.rb in the gyazo gem 1.0.0 for Ruby allows local users to write to arbitrary files via a symlink attack on a temporary file, related to time-based filenames.