Go to:
Gentoo Home
Documentation
Forums
Lists
Bugs
Planet
Store
Wiki
Get Gentoo!
Gentoo's Bugzilla – Attachment 135305 Details for
Bug 198231
dev-tex/feynmf < 1.08-r2 Insecure temporary file creation (CVE-2007-5940)
Home
|
New
–
[Ex]
|
Browse
|
Search
|
Privacy Policy
|
[?]
|
Reports
|
Requests
|
Help
|
New Account
|
Log In
[x]
|
Forgot Password
Login:
[x]
[patch]
52_feynmf-perl-sec-fix
52_feynmf-perl-sec-fix (text/plain), 931 bytes, created by
Robert Buchholz (RETIRED)
on 2007-11-06 02:28:09 UTC
(
hide
)
Description:
52_feynmf-perl-sec-fix
Filename:
MIME Type:
Creator:
Robert Buchholz (RETIRED)
Created:
2007-11-06 02:28:09 UTC
Size:
931 bytes
patch
obsolete
>#! /bin/sh /usr/share/dpatch/dpatch-run >## 52_feynmf-perl-sec-fix.dpatch by Kevin B. McCarty >## >## All lines beginning with `## DP:' are a description of the patch. >## DP: secure tmp file handling > >@DPATCH@ >--- ./texmf-dist/source/latex/feynmf/feynmf.pl.orig >+++ ./texmf-dist/source/latex/feynmf/feynmf.pl >@@ -270,10 +270,11 @@ > my @tfm = @_; > # Prepare a fake temporary PL file > # (/dev/null won't do, because the font must not be empty): >- my ($pl) = "/tmp/feynmf$$.pl"; >+ my ($pl) = `/bin/tempfile -p feynmf -s .pl`; > my ($tfm); > $pltotf_prog > or die "feynmf: fatal: pltopf programm required unless -notfm\n"; >+ chop ($pl); > open (PL, ">$pl") or die "feynmf: can't open temporary file $pl: $!\n"; > push @temporay_files, $pl; > print PL <<__END_PL__; >@@ -373,7 +374,7 @@ > maybe_run "$gftopk_prog $gf" if $gftopk_prog; > } > } >- close (<LOG>); >+ close (LOG); > } > } > }
You cannot view the attachment while viewing its details because your browser does not support IFRAMEs.
View the attachment on a separate page
.
View Attachment As Diff
View Attachment As Raw
Actions:
View
|
Diff
Attachments on
bug 198231
:
135305
|
135319