Insecure tempfile handling
Bug #1378680 reported by
Michael Vogt
This bug affects 1 person
| Affects | Status | Importance | Assigned to | Milestone | |
|---|---|---|---|---|---|
| apt (Debian) |
Fix Released
|
Unknown
|
|||
| apt (Ubuntu) |
Fix Released
|
Undecided
|
Michael Vogt | ||
| Precise |
Fix Released
|
Medium
|
Marc Deslauriers | ||
| Trusty |
Fix Released
|
Medium
|
Marc Deslauriers | ||
| Utopic |
Fix Released
|
Undecided
|
Michael Vogt | ||
Bug Description
Apt creates the tempfile for apt-get changelog in a insecure fashion. See https:/
Related branches
CVE References
| Changed in apt (Debian): | |
| status: | Unknown → Fix Released |
| tags: | added: patch |
To post a comment you must log in.

Thanks for the debdiffs, I'll prepare security updates.