[SECURITY] New versions of trn fixes /tmp race

From: Aleph One (aleph1at_private)
Date: Fri Aug 20 1999 - 12:39:05 PDT

  • Next message: Aleph One: "Re-release of Patch for "Double Byte Code Page" Vulnerability"

    --xsILJLaVOAbiPmXa
    Content-Type: text/plain; charset=us-ascii
    
    All former versions of trn used a hardcoded filename in /tmp as
    temporary storage.  If the file already exists as symbolic link to
    users files they will be overwritten.
    
    We recommend you upgrade your man2html package as soon as possible.
    
    wget url
            will fetch the file for you
    dpkg -i file.deb
            will install the referenced file.
    
    
    Debian GNU/Linux 2.1 alias slink
    --------------------------------
    
      Source archives:
    
        ftp://ftp.debian.org/debian/dists/proposed-updates/trn_3.6-9.3.1.diff.gz
          MD5 checksum: a1b2a19ea060c289e079444edf908a18
        ftp://ftp.debian.org/debian/dists/proposed-updates/trn_3.6-9.3.1.dsc
          MD5 checksum: 562b8ad926784d101646dc7148919015
    
      Alpha architecture:
    
        ftp://ftp.debian.org/debian/dists/proposed-updates/trn_3.6-9.3.1_alpha.deb
          MD5 checksum: 919bbf1ae668786ec945d4fb042d0d27
    
      Intel ia32 architecture:
    
        ftp://ftp.debian.org/debian/dists/proposed-updates/trn_3.6-9.3.1_i386.deb
          MD5 checksum: b14c9ba3eeef6a33e574c55e022c47a4
    
      Motorola 680x0 architecture:
    
        ftp://ftp.debian.org/debian/dists/proposed-updates/trn_3.6-9.3.1_m68k.deb
          MD5 checksum: 3ad7ab653b333cfc4fb4409c7fe1e192
    
      Sun Sparc architecture:
    
        ftp://ftp.debian.org/debian/dists/proposed-updates/trn_3.6-9.3.1_sparc.deb
          MD5 checksum: 97cebe97d78372706c225309898a2e7d
    
    
    Debian GNU/Linux unstable alias potato
    --------------------------------------
    
      Source archives:
    
        ftp://ftp.debian.org/debian/dists/unstable/main/source/news/trn_3.6-9.4.diff.gz
          MD5 checksum: 46a3f905fecec6e9079ccb6e6c0d27dd
        ftp://ftp.debian.org/debian/dists/unstable/main/source/news/trn_3.6-9.4.dsc
          MD5 checksum: e23192e418c3299f0bee0c5ef0f182e8
        ftp://ftp.debian.org/debian/dists/unstable/main/source/news/trn_3.6.orig.tar.gz
          MD5 checksum: b42f4226072442265fbbda865ca4b796
    
      Alpha architecture:
    
        ftp://ftp.debian.org/debian/dists/unstable/main/binary-alpha/news/trn_3.6-9.4.deb
          MD5 checksum: bdcad9ead736edd1082bd203a26a3233
    
      ARM architecture:
    
        http://security.debian.org/dists/unstable/updates/binary-arm/trn_3.6-9.4_arm.deb
          MD5 checksum: f8c918679d759b3ec22a017eb58fc3b4
    
      Intel ia32 architecture:
    
        ftp://ftp.debian.org/debian/dists/unstable/main/binary-i386/news/trn_3.6-9.4.deb
          MD5 checksum: d2a73698ac259196876a71fd6f45b714
    
      Motorola 680x0 architecture:
    
        ftp://ftp.debian.org/debian/dists/unstable/main/binary-m68k/news/trn_3.6-9.4.deb
          MD5 checksum: 0eb1b01ce9d3a92c2072ba8a6e7c81fa
    
      PowerPC architecture:
    
        ftp://ftp.debian.org/debian/dists/unstable/main/binary-powerpc/news/trn_3.6-9.4.deb
          MD5 checksum: 60ddaabdecb48ae2062d5d88ee608c42
    
      Sun Sparc architecture:
    
        ftp://ftp.debian.org/debian/dists/unstable/main/binary-sparc/news/trn_3.6-9.4.deb
          MD5 checksum: a1525fc83d73502be41411e02ba8ec3f
    
    
    --
    Debian GNU/Linux      .    Security Managers     .   securityat_private
                  debian-security-announceat_private
      Christian Hudon     .     Wichert Akkerman     .     Martin Schulze
    <chrishat_private>   .   <wakkermaat_private>  .   <joeyat_private>
    
    --xsILJLaVOAbiPmXa
    Content-Type: application/pgp-signature
    
    -----BEGIN PGP SIGNATURE-----
    Version: 2.6.3ia
    
    iQCVAwUBN7yKNRRNm5Suj3z1AQHLWgP/YPIOHJ3zfVlGjmCwbtR7k5m/SXBwkXCt
    b3sWJSR6ztc5+1pqddpBPcjLxmPa7TKCTQhJX8gfZWinDEUc4ir4TIfYpjKqSSni
    xoZ0H2V5leqmfG5UOPQpS8idymNYTbpZewpqZfxFXPgO/qjUZQVMiL6fhlymOav6
    /5EeegSJnPU=
    =xzAn
    -----END PGP SIGNATURE-----
    
    --xsILJLaVOAbiPmXa--
    
    
    --
    To UNSUBSCRIBE, email to debian-security-announce-requestat_private
    with a subject of "unsubscribe". Trouble? Contact listmasterat_private
    



    This archive was generated by hypermail 2b30 : Fri Apr 13 2001 - 14:57:45 PDT