OpenBSD Information for VU#10277
Various shells create temporary files insecurely when using << operator
- Vendor Information Help Date Notified: 30 Oct 2000
- Statement Date:
- Date Updated: 05 Jul 2001
This has been fixed (as of 10/30/2000) in OpenBSD csh. The sh (which is pdksh) was not vulnerable.
Further research shows that this vulnerability was not present in earlier releases.
The vendor has not provided us with any further information regarding this vulnerability.
If you have feedback, comments, or additional information about this vulnerability, please send us email.