cdrtools 4:2.0+a38-1ubuntu4 source package in Ubuntu

Changelog

cdrtools (4:2.0+a38-1ubuntu4) hoary; urgency=low


  * SECURITY UPDATE: Fix insecure temporary file handling.
  * 23_debug_tmpfile.dpatch:
    - rscsi/rscsi.c: Do not blindly open the temporary file for debugging
      (which defaults to being in /tmp), but check if it already exists and
      exit if so. This avoids symlink attacks.
    - rscsi/rscsi.dfl: Do not recommend to use /tmp/ as output directory for
      debugging to avoid DoS situations when the temporary file already
      exists.
   - Note: Debugging is disabled by default.
   - Thanks to Javier Fernández-Sanguino Peña <email address hidden> for spotting
     this and the patch.
   - References:
     http://bugs.debian.org/291376

 -- Martin Pitt <email address hidden>  Thu, 24 Mar 2005 10:20:03 +0100

Upload details

Uploaded by:
Ubuntu Archive Auto-Sync
Uploaded to:
Hoary
Original maintainer:
Joerg Jaspert
Architectures:
any
Section:
otherosfs
Urgency:
Low Urgency

See full publishing history Publishing

Series Pocket Published Component Section

Downloads

File Size SHA-256 Checksum
cdrtools_2.0+a38-1ubuntu4.dsc 748 bytes 74fd674af940290c0d4cbe909f0af623a46b6df28528ae71e01cd9fd4408263e
cdrtools_2.0+a38.orig.tar.gz 1.7 MiB 7b4fa7db26674ea42433de472e1f7e53f189991c0e6e17f4b5e91ad985ceb346
cdrtools_2.0+a38-1ubuntu4.diff.gz 107.9 KiB 3ddec5a549a370b1d4fc0aa24cdd34d201ab2799c0f82df1ed2a5ce684c94294

No changes file available.

Binary packages built by this source

cdda2wav: No summary available for cdda2wav in ubuntu hoary.

No description available for cdda2wav in ubuntu hoary.

cdrecord: No summary available for cdrecord in ubuntu hoary.

No description available for cdrecord in ubuntu hoary.

cdrtools-doc: No summary available for cdrtools-doc in ubuntu hoary.

No description available for cdrtools-doc in ubuntu hoary.

mkisofs: No summary available for mkisofs in ubuntu hoary.

No description available for mkisofs in ubuntu hoary.