Slackware: 'nautilus' Symlink attack vulnerability
Posted by LinuxSecurity.com Team   
Slackware autilus was patched and recompiled to fix a problem which would allow a malicious user to mount a symlink attack to overwrite another user's files.

Fri May 3 12:17:25 PDT 2002
patches/packages/nautilus.tgz: Patched to fix metadata security problems.
       Nautilus was patched and recompiled to fix a problem which would allow a
       malicious user to mount a symlink attack to overwrite another user's files.
       Thanks to Joe Testa and Rapid 7, Inc. for finding this problem, and to
       Havoc Pennington for sharing Red Hat's backport of the CVS fixes with us.
       (* Security fix *)