CVE-2011-5146
Bokken before 1.6 and 1.5-x before 1.5-3 for Debian allows local users to overwrite arbitrary files via a symlink attack on /tmp/graph.dot.
Date published : 2012-08-31
http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=651931
http://inguma.eu/projects/bokken/repository/revisions/56894084b0ec