Hi, Happened to come across this bug.
On Sat, 12 Jul 2025 15:38:41 +0100 Mark Hindley <[email protected]> wrote:
+ # Remove any timestamp to force regeneration of all scripts.
+ rm -f /var/tmp/${DPKG_MAINTSCRIPT_PACKAGE}.stamp
This is a very predictable path. Normally those have security concerns as anybody on the system can create this file between here and where it's used. Were those considered? (I haven't checked the code, I only read the patch here).
Paul
OpenPGP_signature.asc
Description: OpenPGP digital signature

