Debian: nedit insecure temporary file
Summary
Package : nedit
Problem type : insecure temporary file
Debian-specific: no
The nedit (Nirvana editor) package as shipped in the non-free section
accompanying Debian GNU/Linux 2.2/potato had a bug in its printing code:
when printing text it would create a temporary file with the to be
printed text and pass that on to the print system. The temporary file
was not created safely, which could be exploited by an attacked to make
nedit overwrite arbitrary files.
This has been fixed in version 5.02-7.1.
wget url
will fetch the file for you
dpkg -i file.deb
will install the referenced file.
Debian GNU/Linux 2.2 alias potato
---------------------------------
Potato was released for alpha, arm, i386, m68k, powerpc and sparc.
Source archives:
MD5 checksum: 82b90eea8263fd3f6140b40737f1fc16
MD5 checksum: e14d25693dab3e329a93bdca10a45f03
MD5 checksum: 2d8d0a8ec173fde6d574ffef40bbc524
Alpha architecture:
MD5 checksum: 18b921a22b20423e1e10ea59...