Package: src:pdfsandwich
version: 0.1.6-1
Severity: grave
Tags: security
X-Debbugs-CC: [email protected]

Hi,

pdfsandwish use totally previsible file name like
/tmp/pdfsandwich_inputfileea1150.pdf[11]

Security team could you open a CVE ?

Upsteam should use for instance a tmpname subdirectory

Bastien

_______________________________________________
Secure-testing-team mailing list
[email protected]
http://lists.alioth.debian.org/cgi-bin/mailman/listinfo/secure-testing-team

Reply via email to