Skip to content

Fix CVE-2020-11867#700

Merged
crsib merged 1 commit intoaudacity:masterfrom
snd1:Fix_CVE-2020-11867
May 10, 2021
Merged

Fix CVE-2020-11867#700
crsib merged 1 commit intoaudacity:masterfrom
snd1:Fix_CVE-2020-11867

Conversation

@snd1
Copy link
Contributor

@snd1 snd1 commented Dec 8, 2020

This fixes CVE-2020-11867 by setting the permissions for the user tmp folder to 700. Closes #699

@luzpaz
Copy link
Contributor

luzpaz commented Feb 28, 2021

Soft bump on this. Is there an ETA?

@Be-ing
Copy link

Be-ing commented May 9, 2021

I am very concerned about the maintenance of an application used by millions of people in which there is no response from a maintainer to a one line fix for a security vulnerability in six months.

@Be-ing
Copy link

Be-ing commented May 10, 2021

Ping can someone review this please?

@crsib crsib merged commit 8bb55b8 into audacity:master May 10, 2021
@Be-ing
Copy link

Be-ing commented May 10, 2021

Thank you @crsib.

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

Can't find CVE-2020-11867 fix

4 participants