passwdehd in libpam-mount 0.43 allows local users to overwrite arbitrary files via a symlink attack on a /tmp/passwdehd.##### temporary file.
https://exchange.xforce.ibmcloud.com/vulnerabilities/46724
http://secunia.com/advisories/32780
http://lists.opensuse.org/opensuse-security-announce/2009-03/msg00000.html