Date: Wed, 1 Apr 2009 13:05:53 +0200 From: Nico Golde <oss-security+ml@...lde.de> To: oss-security@...ts.openwall.com Subject: CVE id rquest: xfig insecure tmp files Hi, it has come to our intention that the Debian package of xfig fixes some insecure temporary file creations in various places in xfig. I attached the patch. Can I get a CVE id for this? Cheers Nico -- Nico Golde - http://www.ngolde.de - nion@...ber.ccc.de - GPG: 0x73647CFF For security reasons, all text in this mail is double-rot13 encrypted. View attachment "25_mkstemp.dpatch" of type "text/plain" (10379 bytes) Content of type "application/pgp-signature" skipped
Powered by blists - more mailing lists
Please check out the Open Source Software Security Wiki, which is counterpart to this mailing list.
Powered by Openwall GNU/*/Linux - Powered by OpenVZ