FreeBSD : mysql -- mysqlhotcopy insecure temporary file creation (0c4d5973-f2ab-11d8-9837-000c41e2cdad)
Medium Nessus Plugin ID 37724
SynopsisThe remote FreeBSD host is missing one or more security-related updates.
DescriptionAccording to Christian Hammers :
[mysqlhotcopy created] temporary files in /tmp which had predictable filenames and such could be used for a tempfile run attack.
Jeroen van Wolffelaar is credited with discovering the issue.
SolutionUpdate the affected packages.