This script is Copyright (C) 2012-2013 Tenable Network Security, Inc.
The remote Mandrake Linux host is missing a security update.
Versions of GnoRPM prior to 0.95 used files in the /tmp directory in
an insecure manner. If GnoRPM is run as root, a local user can exploit
this behaviour to trick GnoRPM into writing to arbitrary files
anywhere on the system.
Update the affected gnorpm package.
Risk factor :
High / CVSS Base Score : 7.2