[Bug 225796] Merge Review: giflib

bugzilla at redhat.com bugzilla at redhat.com
Fri May 22 14:54:45 UTC 2009


Please do not reply directly to this email. All additional
comments should be made in the comments box of this bug.


https://bugzilla.redhat.com/show_bug.cgi?id=225796





--- Comment #5 from Michael Schwendt <bugs.michael at gmx.net>  2009-05-22 10:54:44 EDT ---
Feel free to take over. Robert has fixed all issues I mentioned in comment 1. 

Build log warns about tmpnam() usage. The implementation is not safe. It
creates the temporary file in the current working directory, but that means the
user must never work in a directory an attacker may be able to write in, too.

-- 
Configure bugmail: https://bugzilla.redhat.com/userprefs.cgi?tab=email
------- You are receiving this mail because: -------
You are the QA contact for the bug.




More information about the Fedora-package-review mailing list