RMGir has asked for the wisdom of the Perl Monks concerning the following question:
Does anyone know if there's a real problem and have more details, or is it just that "it's possible to write bad temp file handing in perl" (which seems like a given :)) ?
There are a whole spate of "unspecified and vaguely worded temp file vulnerability discovery" warnings that Trustix just posted, so I don't know if they've made a discovery of a new class of errors...
A quick look/search through p5p archives didn't find anything. (Edit: Neither did downloading the mbox files and running a bunch of grepmail searches on recent months...)
(Edit^2: The advisory is also vague, but makes it sound as if it's a script shipped with perl that has the problem. Maybe one of the installation routines?)
|
|---|
| Replies are listed 'Best First'. | |
|---|---|
|
Re: Insecure temp file handling vulnerability in perl?
by dave_the_m (Monsignor) on Oct 04, 2004 at 12:35 UTC |