Bug#453283: CVE-2007-6061: possible symlink attack

2007-12-28 Thread Luk Claes
On Tue, Dec 04, 2007 at 08:51:57PM +0100, Joost Yervante Damad wrote: On Wednesday 28 November 2007 11:28:21 Steffen Joeris wrote: Package: audacity Severity: grave Tags: security Justification: user security hole Hi The following CVE[0] has been issued against audacity.

Bug#453283: CVE-2007-6061: possible symlink attack

2007-12-04 Thread Joost Yervante Damad
On Wednesday 28 November 2007 11:28:21 Steffen Joeris wrote: Package: audacity Severity: grave Tags: security Justification: user security hole Hi The following CVE[0] has been issued against audacity. CVE-2007-6061: Audacity 1.3.2 creates a temporary directory with a predictable name

Bug#453283: CVE-2007-6061: possible symlink attack

2007-11-28 Thread Steffen Joeris
Package: audacity Severity: grave Tags: security Justification: user security hole Hi The following CVE[0] has been issued against audacity. CVE-2007-6061: Audacity 1.3.2 creates a temporary directory with a predictable name without checking for previous existence of that directory, which