[3dprinter-general] Bug#862078: slic3r: insecure use of tmp-files as intermediate to upload to octoprint

Gregor Riepl onitake at gmail.com
Tue May 9 06:22:04 UTC 2017


> When onfigured with octoprint, the function "send to printer" creates first /tmp/<model-name>.gcode and then
> uploads this file to octoprint, which makes the name somwhow predictable, opening a race with a quite wide
> window of opportunity to upload a different file to the octoprint server.

Thank you for the report.

Did you create an issue on the upstream bug tracker?
Or do you already have a patch?

Thanks,
Greg



More information about the 3dprinter-general mailing list