CenterICQ 4.20.0 and earlier creates temporary files with predictable file names, which allows local users to overwrite arbitrary files via a symlink attack on the gg.token.PID temporary file.
https://euvd.enisa.europa.eu/vulnerability/EUVD-2005-1916
http://www.zataz.net/adviso/centericq-06152005.txt