aaa_base in SuSE Linux 6.3, and cron.daily in earlier versions, allow local users to delete arbitrary files by creating files whose names include spaces, which are then incorrectly interpreted by aaa_base when it deletes expired files from the /tmp directory.
AV:L/AC:L/Au:N/C:N/I:P/A:N
This vulnerability has a 0.69% probability of being exploited in the next 30 days, ranking higher than 51% of all scored CVEs.