[Date Prev][Date Next] [Thread Prev][Thread Next] [Date Index] [Thread Index]

Bug#795600: /usr/lib/apt/solvers/dump: insecure use of /tmp



Package: apt
Version: 1.0.10.1
Tags: security

* David Kalnischkies <david@kalnischkies.de>, 2015-08-14, 10:14:
For the record: /usr/lib/apt/solvers/dump is the solver, just pipe in whatever you want and it will be written to /tmp/edsp.dump

That doesn't sound very secure.

--
Jakub Wilk


Reply to: