inn 2.2.3 allows local users to overwrite arbitrary files via a symlink attack in some configurations.
https://exchange.xforce.ibmcloud.com/vulnerabilities/5916
http://www.securityfocus.com/bid/2190
http://www.linux-mandrake.com/en/security/2001/MDKSA-2001-010.php3
http://www.calderasystems.com/support/security/advisories/CSSA-2001-001.0.txt