Linux Archive

Linux Archive (http://www.linux-archive.org/)
-   Debian Kernel (http://www.linux-archive.org/debian-kernel/)
-   -   builddeb: Don't create files in /tmp with predictable names (http://www.linux-archive.org/debian-kernel/633328-builddeb-dont-create-files-tmp-predictable-names.html)

Maximilian Attems 02-15-2012 02:24 PM

builddeb: Don't create files in /tmp with predictable names
 
On Wed, Feb 15, 2012 at 02:17:29PM +0000, Ben Hutchings wrote:
> The current use of /tmp for file lists is insecure. Put them under
> $objtree/debian instead.
>
> Signed-off-by: Ben Hutchings <ben@decadent.org.uk>
> Cc: stable@vger.kernel.org

Thanks Ben, this seems to have been added in
cd8d60a20a4516016c117ac0f1ac7b06ff606f7e so affects >= 3.0 stable trees.

Acked-by: maximilian attems <max@stro.at>


--
To UNSUBSCRIBE, email to debian-kernel-REQUEST@lists.debian.org
with a subject of "unsubscribe". Trouble? Contact listmaster@lists.debian.org
Archive: 20120215152416.GB30020@vostochny.stro.at">http://lists.debian.org/20120215152416.GB30020@vostochny.stro.at

Joerg Roedel 02-15-2012 03:36 PM

builddeb: Don't create files in /tmp with predictable names
 
On Wed, Feb 15, 2012 at 02:17:29PM +0000, Ben Hutchings wrote:
> The current use of /tmp for file lists is insecure. Put them under
> $objtree/debian instead.
>
> Signed-off-by: Ben Hutchings <ben@decadent.org.uk>
> Cc: stable@vger.kernel.org
> ---
> Joerg, this will textually conflict with your changes. Sorry about
> that, but I think it has to go ahead of them.

No problem. It was easy to rebase. I am about to send a new version.


Joerg

--
AMD Operating System Research Center

Advanced Micro Devices GmbH Einsteinring 24 85609 Dornach
General Managers: Alberto Bozzo
Registration: Dornach, Landkr. Muenchen; Registerger. Muenchen, HRB Nr. 43632


--
To UNSUBSCRIBE, email to debian-kernel-REQUEST@lists.debian.org
with a subject of "unsubscribe". Trouble? Contact listmaster@lists.debian.org
Archive: 20120215163645.GG2238@amd.com">http://lists.debian.org/20120215163645.GG2238@amd.com

Michal Marek 02-18-2012 08:34 PM

builddeb: Don't create files in /tmp with predictable names
 
On Wed, Feb 15, 2012 at 02:17:29PM +0000, Ben Hutchings wrote:
> The current use of /tmp for file lists is insecure. Put them under
> $objtree/debian instead.
>
> Signed-off-by: Ben Hutchings <ben@decadent.org.uk>
> Cc: stable@vger.kernel.org

Thanks, applied. How could I have missed that bug :-/.

Michal


--
To UNSUBSCRIBE, email to debian-kernel-REQUEST@lists.debian.org
with a subject of "unsubscribe". Trouble? Contact listmaster@lists.debian.org
Archive: 20120218213457.GA8332@sepie.suse.cz">http://lists.debian.org/20120218213457.GA8332@sepie.suse.cz


All times are GMT. The time now is 01:02 AM.

VBulletin, Copyright ©2000 - 2014, Jelsoft Enterprises Ltd.
Content Relevant URLs by vBSEO ©2007, Crawlability, Inc.