[Bug 225796] Merge Review: giflib

bugzilla at redhat.com bugzilla at redhat.com
Fri May 22 15:04:18 UTC 2009


Please do not reply directly to this email. All additional
comments should be made in the comments box of this bug.


https://bugzilla.redhat.com/show_bug.cgi?id=225796


Jussi Lehtola <jussi.lehtola at iki.fi> changed:

           What    |Removed                     |Added
----------------------------------------------------------------------------
         AssignedTo|nobody at fedoraproject.org    |jussi.lehtola at iki.fi
               Flag|fedora-review?              |




--- Comment #6 from Jussi Lehtola <jussi.lehtola at iki.fi>  2009-05-22 11:04:17 EDT ---
(In reply to comment #5)
> Feel free to take over. Robert has fixed all issues I mentioned in comment 1. 
> 
> Build log warns about tmpnam() usage. The implementation is not safe. It
> creates the temporary file in the current working directory, but that means the
> user must never work in a directory an attacker may be able to write in, too.  

OK, I'll do the review.

-- 
Configure bugmail: https://bugzilla.redhat.com/userprefs.cgi?tab=email
------- You are receiving this mail because: -------
You are the QA contact for the bug.




More information about the Fedora-package-review mailing list