LWN.net Logo

openslp: temporary file creation vulnerability

Package(s):openslp CVE #(s):
Created:August 18, 2003 Updated:August 20, 2003
Description: According to this advisory there's a symbolic link vulnerability in one of the initscripts provided with openslp. The slpd.all_init file uses '/tmp/route.check' as a temporarily file in an unsafe manner.
Alerts:
Conectiva CLA-2003:723 2003-08-18

(Log in to post comments)

Copyright © 2008, Eklektix, Inc.
Comments and public postings are copyrighted by their creators.
Linux is a registered trademark of Linus Torvalds