Mandriva Linux Security Advisory – A flaw in Amarok prior to 1.4.10 would allow local users to overwrite arbitrary files via a symlink attack on a temporary file that Amarok created with a predictable name. The updated packages have been patched to correct this issue.
You can download this advisory from the following link: https://packetstormsecurity.com/files/download/69152/MDVSA-2008-172.txt
Source: https://packetstormsecurity.com/files/69152/Mandriva-Linux-Security-Advisory-2008-172.html

