[Bug 591215] CVE-2010-3438 perl-POE-Component-IRC: arbitrary IRC command execution due to insufficient stripping of CR/LF

bugzilla at redhat.com bugzilla at redhat.com
Fri Dec 17 15:36:43 UTC 2010


Please do not reply directly to this email. All additional
comments should be made in the comments box of this bug.


https://bugzilla.redhat.com/show_bug.cgi?id=591215

Vincent Danen <vdanen at redhat.com> changed:

           What    |Removed                     |Added
----------------------------------------------------------------------------
            Summary|perl-POE-Component-IRC:     |CVE-2010-3438
                   |arbitrary IRC command       |perl-POE-Component-IRC:
                   |execution due to            |arbitrary IRC command
                   |insufficient stripping of   |execution due to
                   |CR/LF                       |insufficient stripping of
                   |                            |CR/LF
              Alias|                            |CVE-2010-3438

--- Comment #8 from Vincent Danen <vdanen at redhat.com> 2010-12-17 10:36:41 EST ---
This is CVE-2010-3438.

-- 
Configure bugmail: https://bugzilla.redhat.com/userprefs.cgi?tab=email
------- You are receiving this mail because: -------
You are on the CC list for the bug.



More information about the perl-devel mailing list