Bug#330627: Gentoo had an advisory for this

2005-10-05 Thread micah
-BEGIN PGP SIGNED MESSAGE- Hash: SHA1 I have verified that the check_update.sh script in Debian is not vulnerable to this. This was fixed up stream and we are running the latest upstream version. micah Moritz Muehlenhoff wrote: > Hi, > there has been a Gentoo advisory about insecure tem

Bug#330627: Gentoo had an advisory for this

2005-09-29 Thread Moritz Muehlenhoff
Hi, there has been a Gentoo advisory about insecure temp files in rkhunter, which got assigned CAN-2005-1270: http://www.gentoo.org/security/en/glsa/glsa-200504-25.xml So please check, whether the mentioned check_update.sh script is vulnerable in the Debian package as well. Cheers, Moritz