BUGTRAQ alert - [SECURITY] [DSA-001-1] ed symlink attack

ken_i_m ken_i_m at elegantinnovations.com
Wed Nov 29 13:27:01 PST 2000


 From the alert:

Package : ed
Problem type : symlink attack
Debian-specific: no
Alan Cox discovered that GNU ed (a classed line editor tool)
created temporary files unsafely. This has been fixed in version
0.2-18.1.

This showed up in my mailbox just minutes after I finished install ed in my 
new lfs. Is ed even needed anymore? I wouldn't know how to use it if I had to.
I think, therefore, ken_i_m


-- 
Unsubscribe: send email to lfs-discuss-request at linuxfromscratch.org
and put unsubscribe in the subject header of the message




More information about the lfs-dev mailing list