March 8, 2001

Author: JT Smith

Today's Debian security advisories, as posted to Help Net Security: "When ePerl is installed setuid root, it can switch the UID/GID of the scripts' owner (details)" ... "The AsciiSrc and MultSrc widget in the Athena widget library handle temporary files insecurely (details)" ... "It has been reported that one can tweak man2html remotely into consuming all available memory (details)" ... "Former versions of sgml-tools created files directly in /tmp in an insecure fashion (details)."


