LWN.net Logo

uudeview: insecure temporary file creation

Package(s):uudeview CVE #(s):CVE-2008-2266
Created:August 12, 2008 Updated:August 13, 2008
Description: From the Gentoo advisory: UUdeview makes insecure usage of the tempnam() function when creating temporary files. NZBGet includes a copy of the vulnerable code. A local attacker could exploit this vulnerability to overwrite arbitrary files on the system.
Alerts:
Gentoo 200808-11 2008-08-11

(Log in to post comments)

Copyright © 2012, Eklektix, Inc.
Comments and public postings are copyrighted by their creators.
Linux is a registered trademark of Linus Torvalds