Bugtraq mailing list archives
Re: SVGATextMode 1.8 /tmp race
From: marcelo () UCONGRES EDU AR (Marcelo Roccasalva)
Date: Fri, 23 Oct 1998 15:30:11 -0300
On Thu, Oct 22, 1998 at 11:16:47AM -0400, Ben Collins wrote:
-----BEGIN PGP SIGNED MESSAGE----- First off, savetextmode is NOT part of SVGATextMode, it is a script from svgalib. I checked the savetextmode on my debian 2.0 system (svgalib 1.2.13): [root@goodguy(11:10am)-~]%cat /usr/bin/savetextmode #!/bin/sh set -o noclobber restoretextmode -w /dev/stdout > /tmp/textregs restorefont -w /dev/stdout > /tmp/fontdata The noclobber keeps it from overwriting any files. However, from the origianl svgalib source the script looks like this: [root@goodguy(11:13am)-~/svgalib-1.3.0/utils]%cat savetextmode #!/bin/sh restoretextmode -w /tmp/textregs restorefont -w /tmp/fontdata This WILL overwrite any files. So if you use the base svgalib, then you have a problem. NOTE: The Debian package for svgalib 1.3 directs the output to /etc/vga, so it is safe. I'm not sure if redhat has this changed or not.
-- Redhat 5.1, last upgrade from their ftp site: [root@kosa /root] # rpm -q svgalib svgalib-1.2.13-5 [root@kosa /root] # cat /usr/bin/savetextmode #!/bin/sh restoretextmode -w /tmp/textregs restorefont -w /tmp/fontdata [root@kosa /root] # -- Marcelo <marcelo.r () ucongres edu ar> ------------------------------------------------------------------------------ Hiroshima 45 -- Chernobyl 86 -- Windows 95
Current thread:
- SVGATextMode 1.8 /tmp race Adrian Voinea (Oct 21)
- License Manager's lockfiles (Solaris 2.5.1) Joel Eriksson (Oct 21)
- Re : 13 tiny bytes to show the huge sillyness of our great common ga (Oct 23)
- Re: License Manager's lockfiles (Solaris 2.5.1) pedward () WEBCOM COM (Oct 23)
- Re: License Manager's lockfiles (Solaris 2.5.1) Roger Harrison ? (Oct 23)
- Re: License Manager's lockfiles (Solaris 2.5.1) Peter Marelas (Oct 24)
- Re: SVGATextMode 1.8 /tmp race dumped (Oct 22)
- Re: SVGATextMode 1.8 /tmp race Ben Collins (Oct 22)
- Re: SVGATextMode 1.8 /tmp race Marcelo Roccasalva (Oct 23)
- Incorrect behaviour of setre[ug]id in OpenBSD Will Waites (Oct 22)
- Re: Incorrect behaviour of setre[ug]id in OpenBSD Will Waites (Oct 23)
- slocate v1.4 klindsay (Oct 24)
- Re: Incorrect behaviour of setre[ug]id in OpenBSD matthew green (Oct 24)
- HP 11.0 sulog Problem Ron Youngclaus (Oct 26)
- License Manager's lockfiles (Solaris 2.5.1) Joel Eriksson (Oct 21)