|
|
| |
|
| |
fedora-business-cards: insecure temporary file usage
| Package(s): | fedora-business-cards |
CVE #(s): | CVE-2013-0159
|
| Created: | September 10, 2013 |
Updated: | September 11, 2013 |
| Description: |
From the Red Hat bugzilla:
Michael Scherer reported that the fedora-business-cards script used /tmp/fedora-business-cards-buffer.svg as a temporary file, which could be used in symlink attacks to overwrite the contents of a file with write permissions to the person running fedora-business-cards. |
| Alerts: |
|
( Log in to post comments)
|
|
|