Bug 51103 (CVE-2005-1740)

Summary: VUL-0: CVE-2005-1740: net-snmp: insecure tempfile creation
Product: [Novell Products] SUSE Security Incidents Reporter: Dirk Mueller <dmueller>
Component: IncidentsAssignee: Ruediger Oertel <ro>
Status: RESOLVED FIXED QA Contact: Security Team bot <security-team>
Severity: Normal    
Priority: P3 - Medium CC: security-team
Version: unspecified   
Target Milestone: ---   
Hardware: All   
OS: Linux   
Whiteboard: CVE-2005-1740: CVSS v2 Base Score: 10.0 (AV:N/AC:L/Au:N/C:C/I:C/A:C)
Found By: Other Services Priority:
Business Priority: Blocker: ---
Marketing QA Status: --- IT Deployment: ---

Description Dirk Mueller 2004-03-16 08:56:21 UTC
matrix:/usr/bin # grep "/tmp/" fixproc 
      local ($tmpfile) = "/tmp/fix_$$"; 
      local ($tmpfile) = "/tmp/check_$$";
Comment 1 Ruediger Oertel 2004-03-19 07:58:39 UTC
ok, fixing for STABLE 
Comment 2 Ludwig Nussel 2006-01-27 08:45:10 UTC
CVE-2005-1740
Comment 3 Marcus Meissner 2006-05-10 12:55:47 UTC
was not cced to secteam
CVE-2005-1740
Comment 4 Thomas Biege 2009-10-13 20:53:44 UTC
CVE-2005-1740: CVSS v2 Base Score: 10.0 (AV:N/AC:L/Au:N/C:C/I:C/A:C)