Package: flexbackup Severity: grave Tags: security "ZATAZ Audits" has published an advisory concerning flexbackup. Based on a cursory investigation of the source package, Debian is affected as well.
From: ZATAZ Audits <[EMAIL PROTECTED]> Subject: [Full-disclosure] flexbackup default config insecure temporary file creation Date: Mon, 17 Oct 2005 10:06:06 +0200 Organization: ZATAZ Audits Message-ID: <[EMAIL PROTECTED]> ######################################################### flexbackup default config insecure temporary file creation Vendor: http://flexbackup.sourceforge.net/ Advisory: http://www.zataz.net/adviso/flexbackup-09192005.txt Vendor informed: yes Exploit available: yes Impact : low Exploitation : low ######################################################### The vulnerabilities ared due to insecure temporary files creations due to a default config. [...] -- To UNSUBSCRIBE, email to [EMAIL PROTECTED] with a subject of "unsubscribe". Trouble? Contact [EMAIL PROTECTED]