[LEDE-DEV] [PATCH] uci/file: replace mktemp() with mkstemp()

Maxim Gorbachyov maxim.gorbachyov at gmail.com
Sun Sep 17 16:21:23 PDT 2017


On Sun, Sep 17, 2017 at 4:06 PM, Stijn Tintel <stijn at linux-ipv6.be> wrote:

>> Because mktemp() is evil.
> Hi, please add a reference when making such claims.

"Never use mktemp() ... every use of mktemp() is a security risk"
https://linux.die.net/man/3/mktemp

I thought it's obvious.



More information about the Lede-dev mailing list