Gnu · Gnu Parallel · CVE-2015-4155
**Name of the Vulnerable Software and Affected Versions**
GNU Parallel versions prior to 20150422
**Description**
The issue allows local users to write to arbitrary files via a symlink attack on a temporary file when using certain options, including `--pipe`, `--tmux`, `--cat`, `--fifo`, or `--compress`.
**Recommendations**
For GNU Parallel versions prior to 20150422, update to a version 20150422 or later to resolve the issue. As a temporary workaround, consider avoiding the use of options `--pipe`, `--tmux`, `--cat`, `--fifo`, or `--compress` until a patch is available. Restrict access to temporary files to minimize the risk of exploitation.