mon
Dmitry E. Oboukhov found that the test.alert script used in one of
the alert functions in mon created temporary files insecurely, which
could lead to a local denial of service or arbitrary file overwrite
via a symlink attack (CVE-2008-4477).
The updated packages have been patched to prevent this issue.
_______________________________________________________________________
References:
http://cve.mitre.org/cgi-bin/cvename.cg ... -2008-4477
_______________________________________________________________________