hugin (0.7~beta4-0ubuntu4) hardy; urgency=low
* SECURITY UPDATE: overwriting of arbitrary files via symlink attack
(LP: #162602)
* src/Panorama/PTOptimise.cpp, src/hugin/AutoCtrlPointCreator.cpp:
Remove insecure temporary file usage. Patch from Fedora.
* References:
CVE-2007-5200
-- William Grant <[EMAIL PROTECTED]> Sun, 18 Nov 2007
16:22:20 +1100
** Changed in: hugin (Ubuntu Hardy)
Status: In Progress => Fix Released
--
[CVE-2007-5200] hugin allows local users to overwrite arbitrary files via a
symlink attack on a temporary file.
https://bugs.launchpad.net/bugs/162602
You received this bug notification because you are a member of Ubuntu
Bugs, which is the bug contact for Ubuntu.
--
ubuntu-bugs mailing list
[email protected]
https://lists.ubuntu.com/mailman/listinfo/ubuntu-bugs