Local users can destroy the contents of any file on any mounted filesystem.
April, 22 2000 SECURITY UPDATE: OpenLDAP
OpenLDAP follows symbolic links when creating files. The default location for these files is /usr/tmp, which is a symlink to /tmp, which in turn is a world-writable directory. Local users can destroy the contents of any file on any mounted filesystem. Please upgrade to: