~ubuntu-branches/ubuntu/dapper/mon/dapper-security

Viewing all changes in revision 6.

  • Committer: Bazaar Package Importer
  • Author(s): Stefan Lesicnik
  • Date: 2008-10-17 20:39:19 UTC
  • Revision ID: james.westby@ubuntu.com-20081017203919-32tv1xp6c2vvja2b
Tags: 0.99.2-9ubuntu1.1
* SECURITY UPDATE: alert.d/test.alert in mon 0.99.2 allows local users to
  overwrite arbitrary files via a symlink attack on the test.alert.log
  temporary file.. (LP: #285100)
  - alert.d/test.alert : Dont create file in /tmp
  - CVE-2008-4477

expand all expand all

Show diffs side-by-side

added added

removed removed

Lines of Context: