Gentoo: GLSA-200507-22: sandbox: Insecure temporary file handling
Summary
Gentoo Linux Security Advisory GLSA 200507-22
https://security.gentoo.org/
Severity: Low
Title: sandbox: Insecure temporary file handling
Date: July 25, 2005
Bugs: #96782
ID: 200507-22
Synopsis
=======
The sandbox utility may create temporary files in an insecure manner.
Background
=========
sandbox is a Gentoo Linux utility used by the Portage package
management system.
Affected packages
================
-------------------------------------------------------------------
Package / Vulnerable / Unaffected
-------------------------------------------------------------------
1 sys-apps/sandbox < 1.2.11 >= 1.2.11
==========
The Gentoo Linux Security Audit Team discovered that the sandbox
utility was vulnerable to multiple TOCTOU (Time of Check, Time of Use)
file creation race conditions.
Impact
=====
Local us...
Resolution
References
Availability
Concerns
Background