{"id":"CVE-2015-4156","details":"GNU Parallel before 20150522 (Nepal), when using (1) --cat or (2) --fifo with --sshlogin, allows local users to write to arbitrary files via a symlink attack on a temporary file.","modified":"2026-04-10T03:45:18.936734Z","published":"2015-06-02T14:59:16Z","references":[{"type":"ADVISORY","url":"http://lists.gnu.org/archive/html/parallel/2015-04/msg00045.html"},{"type":"ADVISORY","url":"http://lists.gnu.org/archive/html/parallel/2015-05/msg00024.html"},{"type":"WEB","url":"http://lists.opensuse.org/opensuse-updates/2015-05/msg00090.html"},{"type":"WEB","url":"http://www.securityfocus.com/bid/74961"}],"schema_version":"1.7.5"}