Gentoo Websites Logo
Go to: Gentoo Home Documentation Forums Lists Bugs Planet Store Wiki Get Gentoo!

Bug 235827 (CVE-2008-4985)

Summary: media-video/vdr: audit wrt insecure temp file usage (CVE-2008-4985)
Product: Gentoo Security Reporter: Christian Hoffmann (RETIRED) <hoffie>
Component: AuditingAssignee: Gentoo Security <security>
Status: RESOLVED INVALID    
Severity: normal CC: vdr
Priority: High    
Version: unspecified   
Hardware: All   
OS: All   
URL: http://bugs.debian.org/496421
Whiteboard: B3 [upstream]
Package list:
Runtime testing required: ---
Bug Depends on:    
Bug Blocks: 235770    

Description Christian Hoffmann (RETIRED) gentoo-dev 2008-08-26 18:41:00 UTC
See $URL and bug 235770.
Comment 1 Stefan Behte (RETIRED) gentoo-dev Security 2008-11-07 02:41:54 UTC
URL:       http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2008-4985
Published: 2008-11-06
Severity:  Medium

http://dev.gentoo.org/~rbu/security/debiantemp/vdr-dbg
Comment 2 Stefan Behte (RETIRED) gentoo-dev Security 2008-11-07 02:50:46 UTC
vdrleaktest is debian-specific, it's not in media-video/vdr-1.4.7-r10 or media-video/vdr-1.6.0_p2.

find ./ -name vdrleaktest
and
grep -ire "/tmp/" -e memleaktest vdr-1.6.0
do not find anything.

So, closing as INVALID.