Berkeley Software Design, Inc. Information for VU#10277

Various shells create temporary files insecurely when using << operator

Status

Not Affected

Vendor Statement

Vendor-distributed shells are not vulnerable.

Vendor Information

The vendor has not provided us with any further information regarding this vulnerability.

Vendor References

None

Addendum

Third-party shells may still be vulnerable -- consult vendor.

If you have feedback, comments, or additional information about this vulnerability, please send us email.