Launchpad.net

CVE 2008-1694

vcdiff in Emacs 20.7 to 22.1.50, when used with SCCS, allows local users to overwrite arbitrary files via a symlink attack on temporary files.

See the CVE page on Mitre.org for more details.