| Summary: | sys-apps/groff: Insecure Temp File Usage by pdfroff | ||
|---|---|---|---|
| Product: | Gentoo Security | Reporter: | Tim Sammut (RETIRED) <underling> |
| Component: | Vulnerabilities | Assignee: | Gentoo Security <security> |
| Status: | RESOLVED NEEDINFO | ||
| Severity: | normal | CC: | base-system |
| Priority: | Normal | ||
| Version: | unspecified | ||
| Hardware: | All | ||
| OS: | Linux | ||
| URL: | http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=538330 | ||
| Whiteboard: | A3 [upstream/ebuild] | ||
| Package list: | Runtime testing required: | --- | |
|
Description
Tim Sammut (RETIRED)
2011-06-18 18:51:48 UTC
Does this affect latest stable? If not, latest testing? Just compared the patch with the groff Git repo [0] and upstream still has not committed. However, there is no substance here proving a vulnerability exists. [0]: http://git.savannah.gnu.org/cgit/groff.git/tree/contrib/eqn2graph/eqn2graph.sh Searching also reveals no CVE's related to this particular patch or issue per the source code files. |