gsinterf.c in bmv 1.2 and earlier allows local users to overwrite arbitrary files via a symlink attack on temporary files.
https://exchange.xforce.ibmcloud.com/vulnerabilities/18823
http://www.debian.org/security/2005/dsa-633
http://securitytracker.com/id?1012847
http://securityfocus.org/bid/12229
http://secunia.com/advisories/13796
http://secunia.com/advisories/13793
http://packages.debian.org/changelogs/pool/main/b/bmv/bmv_1.2-14.2/changelog