LWN.net Logo

tunapie: several vulnerabilities

Package(s):tunapie CVE #(s):CVE-2009-1253 CVE-2009-1254
Created:April 8, 2009 Updated:April 8, 2009
Description: From the Debian advisory:

Kees Cook discovered that insecure handling of temporary files may lead to local denial of service through symlink attacks. CVE-2009-1253

Mike Coleman discovered that insufficient escaping of stream URLs may lead to the execution of arbitrary commands if a user is tricked into opening a malformed stream URL. CVE-2009-1254

Alerts:
Debian DSA-1764-1 2009-04-07

(Log in to post comments)

Copyright © 2013, Eklektix, Inc.
Comments and public postings are copyrighted by their creators.
Linux is a registered trademark of Linus Torvalds