cdrtools 4:2.0+a38-1ubuntu4 source package in Ubuntu
Changelog
cdrtools (4:2.0+a38-1ubuntu4) hoary; urgency=low * SECURITY UPDATE: Fix insecure temporary file handling. * 23_debug_tmpfile.dpatch: - rscsi/rscsi.c: Do not blindly open the temporary file for debugging (which defaults to being in /tmp), but check if it already exists and exit if so. This avoids symlink attacks. - rscsi/rscsi.dfl: Do not recommend to use /tmp/ as output directory for debugging to avoid DoS situations when the temporary file already exists. - Note: Debugging is disabled by default. - Thanks to Javier Fernández-Sanguino Peña <email address hidden> for spotting this and the patch. - References: http://bugs.debian.org/291376 -- Martin Pitt <email address hidden> Thu, 24 Mar 2005 10:20:03 +0100
Upload details
- Uploaded by:
- Ubuntu Archive Auto-Sync
- Uploaded to:
- Hoary
- Original maintainer:
- Joerg Jaspert
- Architectures:
- any
- Section:
- otherosfs
- Urgency:
- Low Urgency
See full publishing history Publishing
Series | Published | Component | Section |
---|
Downloads
File | Size | SHA-256 Checksum |
---|---|---|
cdrtools_2.0+a38-1ubuntu4.dsc | 748 bytes | 74fd674af940290c0d4cbe909f0af623a46b6df28528ae71e01cd9fd4408263e |
cdrtools_2.0+a38.orig.tar.gz | 1.7 MiB | 7b4fa7db26674ea42433de472e1f7e53f189991c0e6e17f4b5e91ad985ceb346 |
cdrtools_2.0+a38-1ubuntu4.diff.gz | 107.9 KiB | 3ddec5a549a370b1d4fc0aa24cdd34d201ab2799c0f82df1ed2a5ce684c94294 |
No changes file available.
Binary packages built by this source
- cdda2wav: No summary available for cdda2wav in ubuntu hoary.
No description available for cdda2wav in ubuntu hoary.
- cdrecord: No summary available for cdrecord in ubuntu hoary.
No description available for cdrecord in ubuntu hoary.
- cdrtools-doc: No summary available for cdrtools-doc in ubuntu hoary.
No description available for cdrtools-doc in ubuntu hoary.
- mkisofs: No summary available for mkisofs in ubuntu hoary.
No description available for mkisofs in ubuntu hoary.