|
|
| |
|
| |
python: insecure file creation
| Package(s): | python |
CVE #(s): | CVE-2011-4944
|
| Created: | May 30, 2012 |
Updated: | October 18, 2012 |
| Description: |
From the Novell bugzilla:
python distutils first creates ~/.pypirc and then calls chmod() to restrict
permissions. This allows for a time window where the file is readable by
others. |
| Alerts: |
|
( Log in to post comments)
|
|
|