Comment 15 for bug 14782

Revision history for this message
Martin Pitt (pitti) wrote :

Fixed Hoary:

 sharutils (1:4.2.1-11ubuntu2) hoary; urgency=low
 .
   * SECURITY UPDATE: Fix insecure temporary file handling.
   * src/unshar.c: Use tmpfile() for creating a temporary file instead of
     PID-based naming (Ubuntu #8459).
   * doc/sharutils.texi, doc/shar.1: Fixed examples to read /somewhere/foo
     instead of /tmp/foo.
   * Thanks to Santiago Vila <email address hidden> for the patch.
   * References:
     http://bugs.debian.org/302412