Vulnerability Development mailing list archives

removal of /tmp/appXXXXXX


From: Matthew Hannigan <mlh () zip com au>
Date: Tue, 30 Jul 2002 00:35:07 +1000


I found a program which removes
a file named like /tmp/appXXXXXX.  Seems
to be a tmpnam attempt gone wrong.

Does this make the system vulnerable?
The program is run by root as often as
not.

Matt


Current thread: