[Bug 1051106] perl-PlRPC: weak crypto

bugzilla at redhat.com bugzilla at redhat.com
Thu Jan 9 22:00:02 UTC 2014


https://bugzilla.redhat.com/show_bug.cgi?id=1051106



--- Comment #2 from Vincent Danen <vdanen at redhat.com> ---
The actual proposed patch to upstream is here:

*
https://rt.cpan.org/Public/Ticket/Attachment/1289399/683202/0001-Security-notice-for-Proxy.patch

As per http://seclists.org/oss-sec/2014/q1/62 MITRE has held off assigning any
CVEs for this weak crypto issue.

-- 
You are receiving this mail because:
You are on the CC list for the bug.
Unsubscribe from this bug https://bugzilla.redhat.com/token.cgi?t=9UN6z1dDHL&a=cc_unsubscribe



More information about the perl-devel mailing list