tags 496407 confirmed security
thanks

Hi,

sng_regress indeed uses insecure temp files on several different occasions. 
Because it's a shell script, it can probably be fixed in a straightforward 
way by using essential 'mktemp'.

I wondered whether a regression testing script should be installed in the 
package aswell, isn't this more something to keep in the source package for 
use with a test suite?

cheers,
Thijs

Attachment: pgps1e19mldiL.pgp
Description: PGP signature

Reply via email to