Alerts This Week
Warning Icon 1 916
Alerts This Week
Warning Icon 1 916

Debian: DSA-2007-001 Serious: Python Insecure File Handling Issue

gentoo
Calendar Grey October 12, 2007
Dist Gentoo Esm H88
BCK Devices temporary file vulnerabilities in Debian Advisory DSA 200710-20 categorized as moderate risk, serious for administrators.
SKK insecurely creates temporary files.

Summary

Gentoo Linux Security Advisory GLSA 200710-10 https://security.gentoo.org/ Severity: Normal Title: SKK Tools: Insecure temporary file creation Date: October 12, 2007 Bugs: #193121 ID: 200710-10

Synopsis ======= SKK insecurely creates temporary files.
Background ========= SKK is a Japanese input method for Emacs.
Affected packages ================ ------------------------------------------------------------------- Package / Vulnerable / Unaffected ------------------------------------------------------------------- 1 app-i18n/skktools < 1.2-r1 >= 1.2-r1
========== skkdic-expr.c insecurely writes temporary files to a location in the form $TMPDIR/skkdic$PID.{pag,dir,db}, where $PID is the process ID.
Impact ===== A local attacker could create symbolic links in the directory where the temporary files are written, poi...

Read the Full Advisory

Resolution

References

Availability

style>.gentoo_availability{display:block;}

Concerns

Synopsis

Background

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Affected Packages

Impact

Workaround

Your message here