[Bug 1077023] CVE-2014-2524 readline: insecure temporary file use in _rl_tropen()

bugzilla at redhat.com bugzilla at redhat.com
Mon May 26 13:38:34 UTC 2014


https://bugzilla.redhat.com/show_bug.cgi?id=1077023



--- Comment #7 from Tomas Hoger <thoger at redhat.com> ---
Fixed upstream in 6.3 patch 3 by making the code only get compiled in when
building with -DDEBUG.

http://lists.gnu.org/archive/html/bug-readline/2014-03/msg00057.html
http://git.savannah.gnu.org/cgit/readline.git/commit/?id=8408f86
ftp://ftp.cwru.edu/pub/bash/readline-6.3-patches/readline63-003

-- 
You are receiving this mail because:
You are on the CC list for the bug.
Unsubscribe from this bug https://bugzilla.redhat.com/token.cgi?t=zIKxd8qBqA&a=cc_unsubscribe


More information about the mingw mailing list