|
|
| |
|
| |
feta: insecure temp file handling
| Package(s): | feta |
CVE #(s): | CVE-2008-4440
|
| Created: | October 7, 2008 |
Updated: | October 8, 2008 |
| Description: |
From the Debian advisory:
Dmitry E. Oboukhov discovered that the "to-upgrade" plugin of Feta, a simpler interface to APT, dpkg, and other Debian package tools creates temporary files insecurely, which may lead to local denial of service through symlink attacks.
|
| Alerts: |
|
( Log in to post comments)
|
|
|