[Bug 1078083] CVE-2014-2525 libyaml: heap-based buffer overflow when parsing URLs

bugzilla at redhat.com bugzilla at redhat.com
Fri Oct 31 19:36:14 UTC 2014


https://bugzilla.redhat.com/show_bug.cgi?id=1078083

Marianne Feifer <mfeifer at redhat.com> changed:

           What    |Removed                     |Added
----------------------------------------------------------------------------
                 CC|mfeifer at redhat.com          |

Kurt Seifried <kseifried at redhat.com> changed:

           What    |Removed                     |Added
----------------------------------------------------------------------------
         Whiteboard|impact=important,public=201 |impact=important,public=201
                   |40327,reported=20140318,sou |40327,reported=20140318,sou
                   |rce=distros,cvss2=6.8/AV:N/ |rce=distros,cvss2=6.8/AV:N/
                   |AC:M/Au:N/C:P/I:P/A:P,rhel- |AC:M/Au:N/C:P/I:P/A:P,rhel-
                   |6/libyaml=affected,rhel-7/l |6/libyaml=affected,rhel-7/l
                   |ibyaml=affected,rhscl-1/rub |ibyaml=affected,rhscl-1/rub
                   |y193-libyaml=affected,rhscl |y193-libyaml=affected,rhscl
                   |-1/libyaml=affected,mrg-1/l |-1/libyaml=affected,mrg-1/l
                   |ibyaml=wontfix,mrg-2/libyam |ibyaml=wontfix,mrg-2/libyam
                   |l=wontfix,rhn_satellite_5.3 |l=wontfix,rhn_satellite_5.3
                   |/libyaml=affected,rhn_satel |/libyaml=affected,rhn_satel
                   |lite_5.4/libyaml=affected,r |lite_5.4/libyaml=affected,r
                   |hn_satellite_5.5/libyaml=af |hn_satellite_5.5/libyaml=af
                   |fected,rhn_satellite_5.6/li |fected,rhn_satellite_5.6/li
                   |byaml=affected,rhn_satellit |byaml=affected,rhn_satellit
                   |e_6/libyaml=affected,rhui-2 |e_6/libyaml=affected,rhui-2
                   |/libyaml=wontfix,sam-1/liby |/libyaml=wontfix,sam-1/liby
                   |aml=defer,cfme-5/mingw-liby |aml=defer,cfme-5/mingw-liby
                   |aml=defer,cfme-5/ruby193-li |aml=wontfix,cfme-5/ruby193-
                   |byaml=defer,openstack-3/lib |libyaml=affected,openstack-
                   |yaml=affected,openstack-3/r |3/libyaml=affected,openstac
                   |uby193-libyaml=affected,ope |k-3/ruby193-libyaml=affecte
                   |nstack-4/libyaml=affected,o |d,openstack-4/libyaml=affec
                   |penshift-enterprise-1/ruby1 |ted,openshift-enterprise-1/
                   |93-libyaml=wontfix,openshif |ruby193-libyaml=wontfix,ope
                   |t-1/ruby193-libyaml=affecte |nshift-1/ruby193-libyaml=af
                   |d,fedora-all/libyaml=affect |fected,fedora-all/libyaml=a
                   |ed,epel-all/libyaml=affecte |ffected,epel-all/libyaml=af
                   |d,fedora-all/perl-YAML-LibY |fected,fedora-all/perl-YAML
                   |AML=affected,epel-6/perl-YA |-LibYAML=affected,epel-6/pe
                   |ML-LibYAML=affected         |rl-YAML-LibYAML=affected



-- 
You are receiving this mail because:
You are on the CC list for the bug.
Unsubscribe from this bug https://bugzilla.redhat.com/token.cgi?t=F5MTEYZhwy&a=cc_unsubscribe



More information about the perl-devel mailing list