Red Hat Bugzilla – Bug 56565
xsane - mktemp complaints
Last modified: 2007-04-18 12:38:22 EDT
Description of Problem:
An xsane recompilation results, among other things, in the following
xsane-back-gtk.c:344: the use of `mktemp' is dangerous, better use
Yes, indeed! BTW - wouldn't be nicer if xsane would use private
subdirectories in /tmp instead of dropping, and leaving, files
all over the place.
There are several places that are exploitable. Analysing further. Thanks for
pointing it out.
It seems Oliver has gone ahead and released 0.82 before we'd agreed on a fix
to this. :-/
Fixed by RHSA-2001:171,172.