From mboxrd@z Thu Jan 1 00:00:00 1970 Path: news.gmane.org!not-for-mail From: Steve Kemp Newsgroups: gmane.emacs.bugs Subject: bug#17428: Bug#747100: emacs23: Insecure use of temporary files in included lisp libraries/packages Date: Thu, 08 May 2014 10:02:06 +0100 Message-ID: <1399539726.22579.0__5848.24259062788$1399565068$gmane$org@ssh> References: <87r4466yxs.fsf@trouble.defaultvalue.org> NNTP-Posting-Host: plane.gmane.org Mime-Version: 1.0 Content-Type: multipart/mixed; boundary="=-HMVAl9sufghosoiN9nX4" X-Trace: ger.gmane.org 1399565068 22556 80.91.229.3 (8 May 2014 16:04:28 GMT) X-Complaints-To: usenet@ger.gmane.org NNTP-Posting-Date: Thu, 8 May 2014 16:04:28 +0000 (UTC) Cc: 747100@bugs.debian.org To: 17428@debbugs.gnu.org Original-X-From: bug-gnu-emacs-bounces+geb-bug-gnu-emacs=m.gmane.org@gnu.org Thu May 08 18:04:22 2014 Return-path: Envelope-to: geb-bug-gnu-emacs@m.gmane.org Original-Received: from lists.gnu.org ([208.118.235.17]) by plane.gmane.org with esmtp (Exim 4.69) (envelope-from ) id 1WiQnv-0003sZ-Ui for geb-bug-gnu-emacs@m.gmane.org; Thu, 08 May 2014 18:04:16 +0200 Original-Received: from localhost ([::1]:48092 helo=lists.gnu.org) by lists.gnu.org with esmtp (Exim 4.71) (envelope-from ) id 1WiQnv-0008Hf-HE for geb-bug-gnu-emacs@m.gmane.org; Thu, 08 May 2014 12:04:15 -0400 Original-Received: from eggs.gnu.org ([2001:4830:134:3::10]:39447) by lists.gnu.org with esmtp (Exim 4.71) (envelope-from ) id 1WiQnn-0008FJ-UV for bug-gnu-emacs@gnu.org; Thu, 08 May 2014 12:04:12 -0400 Original-Received: from Debian-exim by eggs.gnu.org with spam-scanned (Exim 4.71) (envelope-from ) id 1WiQnj-0004O0-FW for bug-gnu-emacs@gnu.org; Thu, 08 May 2014 12:04:07 -0400 Original-Received: from debbugs.gnu.org ([140.186.70.43]:38802) by eggs.gnu.org with esmtp (Exim 4.71) (envelope-from ) id 1WiQnj-0004Nw-DY for bug-gnu-emacs@gnu.org; Thu, 08 May 2014 12:04:03 -0400 Original-Received: from Debian-debbugs by debbugs.gnu.org with local (Exim 4.80) (envelope-from ) id 1WiQni-0008NO-ON for bug-gnu-emacs@gnu.org; Thu, 08 May 2014 12:04:03 -0400 X-Loop: help-debbugs@gnu.org In-Reply-To: <87r4466yxs.fsf@trouble.defaultvalue.org> Resent-From: Steve Kemp Original-Sender: "Debbugs-submit" Resent-CC: bug-gnu-emacs@gnu.org Resent-Date: Thu, 08 May 2014 16:04:02 +0000 Resent-Message-ID: Resent-Sender: help-debbugs@gnu.org X-GNU-PR-Message: followup 17428 X-GNU-PR-Package: emacs X-GNU-PR-Keywords: Original-Received: via spool by 17428-submit@debbugs.gnu.org id=B17428.139956500532110 (code B ref 17428); Thu, 08 May 2014 16:04:02 +0000 Original-Received: (at 17428) by debbugs.gnu.org; 8 May 2014 16:03:25 +0000 Original-Received: from localhost ([127.0.0.1]:56147 helo=debbugs.gnu.org) by debbugs.gnu.org with esmtp (Exim 4.80) (envelope-from ) id 1WiQn5-0008Lo-RU for submit@debbugs.gnu.org; Thu, 08 May 2014 12:03:24 -0400 Original-Received: from mail.steve.org.uk ([80.68.84.102]:53530 helo=ssh.steve.org.uk) by debbugs.gnu.org with esmtp (Exim 4.80) (envelope-from ) id 1WiKER-0003a1-2u for 17428@debbugs.gnu.org; Thu, 08 May 2014 05:03:12 -0400 Original-Received: from steve by ssh.steve.org.uk with local (Exim 4.80) (envelope-from ) id 1WiKEJ-0005w9-IT; Thu, 08 May 2014 10:03:03 +0100 X-added-header: www.steve.org.uk X-Mailman-Approved-At: Thu, 08 May 2014 12:03:22 -0400 X-BeenThere: debbugs-submit@debbugs.gnu.org X-Mailman-Version: 2.1.15 Precedence: list X-detected-operating-system: by eggs.gnu.org: GNU/Linux 3.x X-Received-From: 140.186.70.43 X-BeenThere: bug-gnu-emacs@gnu.org List-Id: "Bug reports for GNU Emacs, the Swiss army knife of text editors" List-Unsubscribe: , List-Archive: List-Post: List-Help: List-Subscribe: , Errors-To: bug-gnu-emacs-bounces+geb-bug-gnu-emacs=m.gmane.org@gnu.org Original-Sender: bug-gnu-emacs-bounces+geb-bug-gnu-emacs=m.gmane.org@gnu.org Xref: news.gmane.org gmane.emacs.bugs:88776 Archived-At: --=-HMVAl9sufghosoiN9nX4 Content-Type: text/plain; charset=UTF-8 These issues have now had several CVE identifiers associated with them, for future tracking: http://www.openwall.com/lists/oss-security/2014/03/14/5 Steve -- http://www.steve.org.uk/ --=-HMVAl9sufghosoiN9nX4--