MDKSA-2001:030
- Package name
- sgml-tools
- Date
- 2001-03-15
- Advisory ID
- MDKSA-2001:030
- Affected versions
- 6.1 i586 , 6.0 i586 , 7.2 i586 , 7.1 i586 , CS1.0 i586
Problem description
Insecure handling of temporary file permissions can lead to other users on a multi-user system being able to read the documents being converted. This is due to sgml-tools creating temporary files without any special permissions. The updated packages create a secure temporary directory first, which is readable only by the owner, and then create the temporary files in that secure directory.
Updated packages
6.1 i586
a9478714b0629d55de7aa2f48f0bfcb4 6.1/RPMS/sgml-tools-1.0.9-3.1mdk.i586.rpm 67970748cf90806c3f11885245f38175 6.1/SRPMS/sgml-tools-1.0.9-3.1mdk.src.rpm
6.0 i586
0dffdf59bf60b15f695a8f8cf1e0633e 6.0/RPMS/sgml-tools-1.0.9-3.1mdk.i586.rpm 67970748cf90806c3f11885245f38175 6.0/SRPMS/sgml-tools-1.0.9-3.1mdk.src.rpm
7.2 i586
c5e48714e3da71f692e447eb942a368b 7.2/RPMS/sgml-tools-1.0.9-8.1mdk.i586.rpm c2242855d3be03b899a908944c48ac1d 7.2/SRPMS/sgml-tools-1.0.9-8.1mdk.src.rpm
7.1 i586
40fb202d15e82d166efa06ea2108c87d 7.1/RPMS/sgml-tools-1.0.9-8.2mdk.i586.rpm 50720b8f4781c4542e0898f6d843b737 7.1/SRPMS/sgml-tools-1.0.9-8.2mdk.src.rpm
CS1.0 i586
40fb202d15e82d166efa06ea2108c87d 1.0.1/RPMS/sgml-tools-1.0.9-8.2mdk.i586.rpm 50720b8f4781c4542e0898f6d843b737 1.0.1/SRPMS/sgml-tools-1.0.9-8.2mdk.src.rpm
