Summary: | sys-apps/groff - temporary file vulnerabilities | ||
---|---|---|---|
Product: | Gentoo Security | Reporter: | Carsten Lohrke (RETIRED) <carlo> |
Component: | Vulnerabilities | Assignee: | Gentoo Security <security> |
Status: | RESOLVED INVALID | ||
Severity: | minor | CC: | base-system |
Priority: | High | ||
Version: | unspecified | ||
Hardware: | All | ||
OS: | Linux | ||
Whiteboard: | B3 [ ? ] DerCorny | ||
Package list: | Runtime testing required: | --- |
Description
Carsten Lohrke (RETIRED)
2006-02-09 13:47:54 UTC
base-system please check and provide fixed ebuilds, thanks pic2graph and eqn2graph current tmp handling looks pretty good to me : tmp=`(umask 077 && mktemp -d -q "$d/eqn2graph-XXXXXX") 2> /dev/null` \ && test -n "$tmp" && test -d "$tmp" \ && break This was CVE-2004-1296 and has probably been fixed upstream since then Closing, feel free to reopen if you disagree. |